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SOME RIGHTS RESERVED 


The articles contained in this magazine are released under the 
Creative Commons Attribution-Share Alike 3.0 Unported 
license. This means you can adapt, copy, distribute and 
transmit the articles but only under the following conditions: 
you must attribute the work to the original author in some way 
(at least a name, email or URL) and to this magazine by name 
(‘Full Circle Magazine’) and the URL www. fullcirclemagazine. org 
(but not attribute the article(s) in any way that suggests that 
they endorse you or your use of the work). If you alter, 
transform, or build upon this work, you must distribute the 
resulting work under the same, similar or a compatible license. 
Full Circle magazine is entirely independent of Canonical, the 
sponsor of the Ubuntu projects, and the views and opinions in 
the magazine should in no way be assumed to have Canonical 
endorsement. 


Please note: articles in this magazine are provided 
with absolutely no warranty whatsoever; neither 
the contributors nor Full Circle Magazine accept 
any responsibility or liability for loss or damage 


resulting from readers choosing to apply this 
content to theirs or others computers and 
equipment. 


Editorial 


Welcome to the latest issue of Full Circle. 


As ever, we have Python, Inkscape, Kdenlive part 2, anda 
couple of reviews. This month also marks the start of a new 
series. This one is on programming for Ubuntu Touch. The 
series will cover a wide range of topics and I'm assured, by the 
author, that the series will take into account future Ubuntu 
Touch releases which may include Snaps and the like. Another 
interesting HowTo this month is one on keeping your Linux 
install slim and trim. As it says in the article: just be wary 
before running any software, or command, that is deleting 
things. 


Last month I came across rclone and a nice GUI for it. So, I 
thought I'd write an article about it. Basically, rclone (and the 
GUD helps you move files from cloud host to cloud host. So, for 
example, you could have rclone copy files from your Google 
Drive to your Dropbox. You can also use it to upload, and 
download, files to various cloud hosts. It's a bit fiddly to set up 
since adding hosts has to be done in the terminal, but 
thankfully it's quite easy. 


Only two more issues and Full Circle will be ten years old. 
Speaking of which: the a poll I made is still up. Which I hope 
you'll fill in. It's located at: https://goo.gl/Q8Jm4S. I'm 
interested in what you like/dislike about FCM. I'll publish the 
results in FCM#120. The big tenth anniversary issue. 


All the best, and keep in touch! 


Ronnie 


ronnie @fullcirclemagazine. org 


This magazine was created using : 


SiG@lb sig 


Submitted by Arnfried Walbrecht 


Full Circle Weekly News 


I’ve set up a poll which I hope you'll fill in. It’s 
located at: https://goo.gl/Q8Jm4s. 


We’re interested in what you like/dislike about 
FCM. What I can change/add, and anything else 
you want to add. 


We'll publish the results in a future issue. 


Alpine Linux 3.5.1 Released with Linux Kernel 4.4.45 
LTS, New Security Updates 


Announced a little over a month ago, Alpine Linux 3.5 is a 
major release sporting support for the ZFS file system as root, 
support for the AArch64 (ARM64) hardware architecture, 
improved Python 3 support, replacement of OpenSSL libs with 
LibreSSL, as well as support for the OCaml, R, and JRuby 
programming languages. 


The Alpine Linux 3.5 series is based on the musl 3.5 libe library 
branch, and today’s first bugfix release upgrades the long-term 
supported Linux 4.4 packages to the recently released Linux 
4.4.45 LTS kernel. Of course, it also includes all the latest 
security updates and various other under-the-hood 
improvements. 


Among the updated packages shipped with Alpine Linux 3.5.1, 
we can mention both the PHP 7.0.15 and 5.6.30 branches, H2O 
2.0.5, CURL 7.52.1, FFmpeg 2.8.10, ssh-getkey-Idap 0.1.2, Ruby 
2.1 with a fix for a libressl error, LDoc 1.4.6, aconf 0.6.3, 
python2-tkinter 2.7.13, mkinitfs 3.0.9 with support for 
decrypting apkovl, Docker 1.12.6, and Samba 4.5.4. 


The libxpm 3.5.12, BIND 9.10.4-P5, Irssi 0.8.21, libgit2 0.24.6, 
phpMyAdmin 4.6.5.2, MariaDB 10.1.21, Firejail 0.9.44.4, 
Opus-tools 0.1.10, eudev 3.2.1, PCSC-Lite 1.8.20, and Quagga 
1.1.1 packages are also pre-installed in this first maintenance 
update to the major Alpine Linux 3.5 series. 


Source: http://news.softpedia.com/news/alpine-linux-3-5-1- 
released-with-linux-kernel-4-4-45-Its-new-security- 
updates-512317.shtml 


Linux Mint 18.1 “Serena” Xfce and KDE Editions Are 
Officially Out, Download Now 


While the Xfce flavor entered Beta testing earlier this month, 
the Linux Mint developers had to wait a little longer to publish 


the Beta version of Linux Mint 18.1 “Serena” KDE because they 
wanted to offer users access to the latest KDE Plasma 5.8 LTS 
desktop environment from the Kubuntu Backports PPA. 


So basically, Xfce users had to wait for the KDE edition to be 
finished before they were able to download and install the new 
version on their PCs. Both editions benefit from the same long- 
term support services as the main Cinnamon and MATE 
editions released last year. 


Based on the Ubuntu 16.04 LTS (Xenial Xerus) operating 
system, both the Xfce and KDE editions are powered by the 
long-term supported Linux 4.4 kernel, along with linux- 
firmware 1.157.5, and include pretty much the same internals 
as their bigger brothers. Of course, the Xfce flavor uses the 
latest Xfce 4.12 desktop environment with the Whisker Menu 
1.6.2. 


Linux Mint 18.1 Xfce Edition also includes all in-house built 
applications that the Linux Mint developers are creating as part 
of their XApps project, such as Xed text editor, which sports a 
new search bar and various UI improvements, Xplayer video 
player with monitor blanking functionality, as well as Xviewer 
image viewer and Xreader document reader. 


Source: http://news.softpedia.com/news/linux-mint-18-1-serena- 
xfce-and-kde-editions-are-officially-out-download- 
now-512315.shtml 


Bodhi Linux 4.1.0 Ubuntu-based distro now available 
with updated kernel and new theme 


There are so many Linux distributions nowadays, that it can be 
hard to be excited by them. Linux Mint, for example, releases 
too many versions of its operating system; news of an update 
can become rather ho-hum. Major Linux distributions, such as 
Ubuntu and Fedora, remain exciting, however 


Some smaller Linux-based operating systems are still worthy of 
attention, however, and one such distro is Bodhi. Based on 
Ubuntu, the lightweight OS is very unique thanks to the 


Moksha desktop environment. Because of its familiarity, that 
DE makes Bodhi a smart choice for Windows users looking to 
switch to Linux. Today, Bodhi reaches version 4.1.0. 


While this update isn’t chock full of major changes, the bug 
fixes alone are worth the upgrade. The new theme might only 
be superficial, but I think it looks quite sharp. 


Source: https://betanews.com/2017/01/27/bodhi-linux-4-1-0- 
ubuntu/ 


Canonical Announces LXD 2.8 Pure-Container 
Hypervisor for Ubuntu 16.04 and 14.04 


Canonical announced the availability of the LXD 2.8 pure- 
container hypervisor designed from the ground up to let users 
run unmodified Linux-based operating systems and apps with 
virtual machine-style operations faster than anything else on 
the market. 

LXD 2.8 comes approximately one month after the previous 
maintenance update, and while it’s mostly a bugfix release that 
patches a total of 45 issues reported by users lately, it includes 
a bunch of interesting improvements and new additions, such 
as the ability to use Weblate for its translations. 


It also implements proper reporting of virtual LAN (VLAN) 
device types to the API (Application Programming Interface) 
and client, allows unprivileged users to run the dnsmasq 
instance that LXD uses to manage bridges, and adds support for 
the client to display the date when an LXC image was last used. 


LXD 2.8 also makes exec sessions that are killed by a signal to 
report the respective signal number as part of their exit code 
and delivers an initial rewrite of the Go client API, which 
contains a brand-new API module with all REST API 
definitions. Check out the changelog attached below for details 
about all the bugs fixed in this release. 


Source: http://news.softpedia.com/news/canonical-announces- 
Ixd-2-8-pure-container-hypervisor-for-ubuntu- 16-04- 
and-14-04-512279.shtml 


VPN on Android means ‘Voyeuristic Peeper Network’ in 
many cases 


A worrying number of VPN apps for Android mobile devices 
are rife with malware, spying, and code injection, say 
researchers. 

A study from the University of New South Wales in Australia 
and the University of California at Berkeley found that Android 
apps advertising themselves as VPN clients often contain poor 
security protections, and in some cases engage in outright 
malicious activities. 


“Many apps may legitimately use the VPN permission to offer 
(some form of) online anonymity or to enable access to 
censored content,” the researchers write. “However, malicious 
app developers may abuse it to harvest users’ personal 
information.” 


That sort of malicious activity is shockingly common, the 
researchers found. They studied the activity of 283 VPN apps 
on the Google Play store and catalogued the various risky and 
malicious activities they found. 


“Our results show that — in spite of the promises for privacy, 
security and anonymity given by the majority of VPN apps — 
millions of users may be unawarely subject to poor security 
guarantees and abusive practices inflicted by VPN apps,” the 
researchers noted. 


The study concluded that, in addition to users being wary in 
their choice of VPN apps and keeping a close eye on 
permissions, Google should look to help remedy the situation 
by setting stricter limits on what VPN apps are able to do in 
Android. 


Source: https://www. theregister.co.uk/2017/01/28/ 
vpn_on_android_means_voyeuristic_peeper_network/ 


Mozilla Firefox 51.0.1 and Thunderbird 45.7 Land in 
All Supported Ubuntu OSes 


Canonical released both Mozilla Firefox 51.0.1 and 
Thunderbird 45.7.0 to the stable channels of Ubuntu 12.04 LTS 
(Precise Pangolin), Ubuntu 14.04 LTS (Trusty Tahr), Ubuntu 
16.04 LTS (Xenial Xerus), and Ubuntu 16.10 (Yakkety Yak), 
allowing users to enjoy the latest new features and security 
improvements that landed in these updates. 


Mozilla Firefox 51.0 already received its first minor security 
update, versioned 51.0.1, which made the multiprocess 
incompatibility to correctly register with various add-ons, as 
well as to fix geolocation support on Windows systems. 


On the other hand, the Mozilla Thunderbird 45.7.0 email and 
news client is a bugfix and security release that attempts to 
improve the message preview pane with support for renaming 
or moving of IMAP folders, and fixes the “Move To” button on 
the “Search Messages” panel. 


In Thunderbird 45.7, Mozilla’s developers also made it possible 
for the built-in Calendar to accept or decline email invitations 
from email messages that are being stored in the same folder, 
as well as to finally display recipients for emails sent to 
“undisclosed recipients,” which was broken since Thunderbird 
38. 


Source: http://news.softpedia.com/news/mozilla-firefox-5 1-0-1- 
and-thunderbird-45-7-land-in-all-supported-ubuntu- 
oses-512335.shtml 


Self-protection is key to Linux kernel security 


Linux has quietly taken over the world. The working system 
now powers the massive datacenters that make all our cloud 
purposes and providers potential, together with billions of 
Android units and internet-connected devices that comprise the 
web of issues (IoT). Even the techniques that deal with the day- 
to-day operations on the International Space Station run Linux. 


The truth that Linux is in all places makes kernel safety the 
very best precedence. A problem within the kernel can simply 
create ripples which are felt by virtually everybody. 


Discovering and fixing vulnerabilities within the kernel is just 
one facet of Linux safety; enabling the kernel to face up to 
assaults is much more very important. 


Source: http://www.networkworld.com/article/3161943/security/ 
self-protection-is-key-to-linux-kernel-security.html#tk.rss_security 


Mesa 12.0.6 Hits the Ubuntu 16.04 LTS and Ubuntu 
16.10 Proposed Repositories 


It would appear that Mesa 12.0.6 3D Graphics Library, which 
was announced last week by Collabora’s Emil Velikov, has 
already hit the xenial-proposed and yakkety-proposed channels 
of the Ubuntu 16.04.1 LTS (Xenial Xerus) and Ubuntu 16.10 
(Yakkety Yak) operating systems. 


So if you have the proposed repository (pre-release updates) 
enabled on your Ubuntu PC, you could update to Mesa 12.0.6 
right now by enabling proposed updates in Software & 
Updates. However, Mesa 12.0.6 being the last in the series, it’s 
recommended that you move to the Mesa 13 branch from a 
stable third-party PPA, such as Padoka Stable Mesa. 


With that in mind, and considering the fact that Canonical will 
release the second Ubuntu 16.04 LTS point release in only 
three days, it would appear that Xenial users will stick with 
Mesa 12.0.6 after all and not a recent Mesa 13 version as 
initially believed. But, it looks like users will get newer Mesa 
builds soon after the launch of Ubuntu 16.04.2 LTS. 


Source: http://news.softpedia.com/news/mesa-12-0-6-hits-the- 
ubuntu-16-04-lts-and-ubuntu- 16-10-proposed- 
repositories-5 12358.shtml 


Linux devices with standard settings infected by 
Linux.Proxy.10 malware 


The Linux operating system was once known to be the most 
secure OS in the world, but things have changed since security 
researchers have found malware like Mirai and Bashlite 
infecting Linux-devices turning them into DDoS botnets. Now, 


another malware has been discovered targeting Linux. 


Dubbed Linux.Proxy.10 by researchers at Dr. Web; the malware 
has been developed to run Socket Secure (SOCKS), an Internet 
protocol that routes network packets between a client and 
server through a proxy server by freeware source code of the 
Satanic Socks Server. 


According to Dr. Web’s blog post, “To distribute 
Linux.Proxy.10, cybercriminals log into the vulnerable devices 
via the SSH protocol, and at the same time the list of devices, 
as well as the logins and passwords («IP address: login: 
password») that go with them, are stored on their server.” 


Based on its pattern, researchers noted that Linux.Proxy.10 
takes over those devices which are already infected with 
another malware or have standard settings. The Linux.Proxy10 
also comes with BackDoor.TeamViewer, a Spy-Agent 
administrator panel and a build of Windows malware from a 
known family of Trojan spyware. 


Source: https://www.hackread.com/new-linux-malware-linux- 
proxy-10/ 


Ubuntu 17.04 “Zesty Zapus” Alpha 2 Released, ISO And 
Torrent Files Available 


You might be knowing that Ubuntu 17.04 Alpha 1 was 
scheduled to arrive on December 29. But, as the developers 
were busy due to the Christmas and New Year holidays, they 
canceled the first Alpha and planned to release the next Alpha. 


Now, Canonical has released the second and final Alpha of 
Ubuntu 17.04 Zesty Zapus. You might find the naming a little 
absurd as it’s just the first Alpha. Well, this is how things are. 


For the Ubuntu 17.04 Alpha 2 release, the participating flavors 
are Lubuntu, Ubuntu MATE, Ubuntu GNOME, Kubuntu, Ubuntu 
Kylin, and Ubuntu Budgie. Notably, this release marks the first 
Budgie testing snapshot after it became an official Ubuntu 
flavor. 


Ubuntu 17.04 comes loaded with many software updates that 
are ready for testing. Also, these builds are powered by Linux 
kernel 4.9. 


Specifically, Ubuntu GNOME 17.04 Alpha 2 ships with GNOME 
3.22 and Ubuntu Budgie 17.04 ships with Budgie 10.2.9. 


Source: https://fossbytes.com/ubuntu-17-04-alpha-2/ 


Meet the $114,725 Ubuntu server with eight Nvidia 
Tesla P100 GPUs 


The Ibex Pro is one supercharged machine that will probably 
hurt your electric bill. 


System76’s fastest Ibex Pro with Ubuntu Server 16.10 packs 
some crazy horsepower with Intel’s latest 22-core Xeon E5 v4 
chips and eight Nvidia Tesla P100 graphics processors. 


It’s got the same number of GPUs as Nvidia’s superfast DGX-1, 
which is being used for deep learning. System76 is targeting 
the Ibex Pro — which is a rack server — at the same market as 
the DGX-1. The server has fewer, but newer, CPUs, compared 
to the DGX-1. 


An entry-level Ibex Pro priced at US $9,575 will run Ubuntu 
Server 16.10, with a six-core Intel Xeon E5-2603v4 chip, 16GB 
of memory, a Tesla K40 GPU, and 250GB of storage. 


A fully loaded system is priced at $114,725, and will come 
with two 22-core Xeon E5-2699v4 CPUs, 1.5TB of DDR4 
DRAM, eight Tesla P100 GPUs, 2TB of NVMe-based SSD 
storage, and an additional 32TB of SSD storage. 


System76 has made its name as an Ubuntu PC maker, but the 

Ibex Pro is one of its handful of Ubuntu servers. The server is 

targeted at companies looking to implement machine learning 
for tasks like speech and image recognition. 


Source: http://www.pcworld.com/article/3163019/computers/ 
meet-the-114725-ubuntu-server-with-eight-nvidia-tesla-p100- 


gpus. html 
A Look at What’s Next for Ubuntu Linux in 2017 


Mark Shuttleworth’s company Canonical has been developing 
Ubuntu Linux for more than a decade, with two new major 
milestone releases debuting every year. In 2017, the first 
release will be Ubuntu 17.04, codenamed the ‘Zesty Zapus’ set 
to debut in April. The big question that Ubuntu Linux fans have 
though is what the Ubuntu 17.10 release will be called, when it 
is released in October. 


In a video interview, Shuttleworth provides some insight into 
how he will handle naming for Ubuntu, after the 17.04 release 
and the end of the alphabet with the letter Z. Ubuntu has been 
following a logical alphabetical progression for code names and 
with the 17.04 Zesty Zapus release, a new approach will be 
needed. 


Beyond just the somewhat trivial nature of what the Ubuntu 
17.10 release will be named, Shuttleworth also provided some 
direction on how the Ubuntu Linux distribution will evolve and 
progress over the course of 2017. One area where he expects 
Ubuntu to continue to grow is with the emerging internet of 
things (loT) world. 


Ubuntu Core is a version of Ubuntu that has been optimized for 
small form factor and embedded device deployments, while 
Snappy is an open-source packaging approach that helps to 
enable rapid updates. The security elements of IoT are a 
primary concern to Shuttleworth and it’s an area where he sees 
Snappy playing a role in keeping devices and users safe. 


The other area that Ubuntu continues to work on is its LXD 
hypervisor for enabling increased container density and 
security. The LXD effort was first announced in November 2014 
and has been steadily improving ever since. 


Source: http://www. eweek.com/enterprise-apps/a-look-at-whats- 
next-for-ubuntu-linux-in-2017.html 


You’re taking the p... Linux encryption app Cryptkeeper 
has universal password: ‘p’ 


Linux encryption app Cryptkeeper has a bug that causes it to 
use a single-letter universal decryption password: “p”. 


The flawed version is in Debian 9 (Stretch), currently in testing, 
but not in Debian 8 (Jessie). The bug appears to be a result of a 
bad interaction with the encfs encrypted filesystem’s command 
line interface: Cryptkeeper invokes encfs and attempts to enter 
paranoia mode with a simulated ‘p’ keypress — instead, it sets 
passwords for folders to just that letter. 


Cryptkeeper’s developer appears to have abandoned the 
project. Luckily, it’s not used by that many people - although it 
makes the bug no less tragically hilarious. 


However, encfs is executed with the -S switch which means it’s 
supposed to read the password from stdin without a prompt. 
Previously, encfs was bugged and didn’t quite do this. A bugfix 
corrected its operation to match its documentation — which 
made it incompatible with Cryptkeeper’s assumptions. 


So that’s why Cryptkeeper sets all its directory passwords to 
“p”: encfs was updated and that broke Cryptkeeper’s interface. 
Debian developer Simon McVittie has recommended the app be 


pulled from the Linux distro entirely. 


Source: https://www. theregister.co.uk/2017/01/31/ 
cryptkeeper_cooked/ 


CentOS 7.3 (1611) Linux Distro Now Available for 32- 
Bit (1386) Architectures 


CentOS developer and maintainer Johnny Hughes announced 
the immediate availability of the latest CentOS 7.3 (1611) 
GNU/Linux operating system for the 32-bit (i386) hardware 
architecture. 


If some of the most popular GNU/Linux distributions have 
started dropping support for 32-bit (i686/x86) installations or 


plan to do so in the near future, many are still installable on 
older computers from 10 years ago. 


CentOS 7.3 (1611) is the latest addition to the list of 32-bit 
supported Linux-based operating systems, thanks to a group of 
hard working people from the CentOS AltArch SIG initiative 
trying to create alternative architecture support for CentOS 
Linux. 


The good news, however, is that today’s release of CentOS 7.3 
(1611) Linux distro for 32-bit hardware architectures also 
comes with a couple of Live ISO images bundled with the 
GNOME and KDE desktop environments.- 


Source: http://news.softpedia.com/news/centos-7-3-16 1 1-linux- 
distro-now-available-for-32-bit-i386-architectures-5 12400.shtml 


Latest Ubuntu Update Includes OpenSSL Fixes 


Ubuntu users are being urged to update their operating systems 
to address a handful of recently patched OpenSSL 
vulnerabilities which affect Ubuntu and its derivatives. 


Developers with Canonical, the company that oversees the 
Linux distribution, announced the updates on Tuesday, 
encouraging users to install the latest OpenSSL package 
versions depending on which distribution they’re running. 


The updates resolve several of the vulnerabilities fixed by the 
cryptographic library OpenSSL last Thursday. 


The update also fixes an issue in which OpenSSL used 
“undefined behavior when performing pointer arithmetic,” and 
another in which it incorrect handled certain warning alerts. A 
remote attacker could exploit both vulnerabilities and cause a 
denial of service, according to Ubuntu’s advisory. 


Source: https://threatpost.com/latest-ubuntu-update-includes- 
openssl-fixes/123513/ 


Canonical Releases Snapcraft 2.26 Snap Creator Tool 


for Ubuntu 16.04 LTS, 16.10 


Snappy is Canonical’s application sandboxing and distribution 
framework and Snap is a universal binary format designed to 
allow devs to distribute their apps across multiple Linux-based 
operating systems without having to create a special package 
for each distro. Snapcraft is the tool to build the Snap packages. 


The latest version, Snapcraft 2.26, comes approximately two 
weeks after the release of version 2.25 and promises to 
introduce a bunch of new features, such as support for GUI 
(Graphical User Interface) in Snaps, a new plugin directory 
location, support for snapcraft.yaml in a Snap directory, as well 
as support for go-packages. 


Snapcraft 2.26 also removes the snapd “submodule,” makes 
sure snap.yaml is desktop free, implements proper error colors 
for login failures to the Snappy Store, fixes sso_host for 
developer single sign-on (SSO), adds support for gradle and 
gradlew to the Gradle plugin, and introduces the use of an XDG 
directory for sources. 


Among other noteworthy features implemented in the 
Snapcraft 2.26 release, we can mention support for adding 
Ubuntu users to sudoers on every ADT platform for tests, multi- 
arch support for stage packages, the ability to preserve 
symlinks to directories for sources, and support for the Python 
plugin to download all required packages with a single 
command. 


Source: http://news.softpedia.com/news/canonical-releases- 
snapcraft-2-26-snap-creator-tool-with-gui-support-in- 
snaps-512453.shtml 


The new Dell XPS 13 Developer Edition is the little 
Linux laptop that can 


Installing Linux on a laptop is one of the biggest stumbling 
blocks to adoption of the OS. After all, taking a perfectly good 
PC, nuking Windows, and replacing it with an unfamiliar OS 
can seem a lot like performing open-heart surgery to an 


inexperienced user. When you take into account that there are 
precious few laptops with Linux preinstalled, it’s no wonder 
that desktop Linux adoption numbers are so grim. (There are 
other reasons too, but I won’t go into those here.) 


One of the few laptops to come correct with a Linux OS is 
Dell’s XPS 13 Developer Edition. I got a chance to benchmark 
the 2015 model a few months ago, and really enjoyed playing 
with the little ultrabook. Physically, it’s virtually identical to 
the consumer version of the XPS 13, only it came loaded with 
Ubuntu 14.04. Flash forward, and Dell has updated its 
Developer Edition with Intel’s Kaby Lake CPU and Ubuntu 
16.04. I have to say, there’s not much to dislike about the 
revamp. 


Source: http://www.pcworld.com/article/3161861/linux/the-new- 
dell-xps-13-developer-edition-is-the-little-linux-laptop-that-can. html 


Arch Linux 2017.02.01 Available For Download — Last 
ISO Release With 32-bit Support 


The Arch Linux devs have rolled out their freshly baked Arch 
Linux 2017.02.01 ISO images. This release is an important one 
as it’s the last ISO shipping with the support for 32-bit 
architecture. After this, future releases will only run on 64-bit 
machines. Powered by Linux kernel 4.9.6, the users can grab 
the images from Arch’s download page. The existing users have 
the option to perform an upgrade by running a single 
command. 


Arch Linux is famous for being a highly customizable Linux 
distribution. The die-hard Linux fans love it. Also, it’s a well- 
established fact that installing Arch Linux needs more time and 
commitment, as compared to other beginner-friendly Linux 
distros. However, this feature, surprisingly, makes it a 
recommended Linux distro for a beginner user. Well, that’s the 
beauty of Linux where learning is an integral part of the 
experience. 


Source: https://fossbytes.com/arch-linux-2017-02-01-released- 
feature-download/ 


Alpine Linux 3.5.1 Released with Linux Kernel 4.4.45 
LTS, New Security Updates 


Announced a little over a month ago, Alpine Linux 3.5 is a 
major release sporting support for the ZFS file system as root, 
support for the AArch64 (ARM64) hardware architecture, 
improved Python 3 support, replacement of OpenSSL libs with 
LibreSSL, as well as support for the OCaml, R, and JRuby 
programming languages. 

The Alpine Linux 3.5 series is based on the musl 3.5 libe library 
branch, and today’s first bugfix release upgrades the long-term 
supported Linux 4.4 packages to the recently released Linux 
4.4.45 LTS kernel. Of course, it also includes all the latest 
security updates and various other under-the-hood 
improvements. 


Among the updated packages shipped with Alpine Linux 3.5.1, 
we can mention both the PHP 7.0.15 and 5.6.30 branches, H2O 
2.0.5, CURL 7.52.1, FFmpeg 2.8.10, ssh-getkey-ldap 0.1.2, Ruby 
2.1 with a fix for a libressl error, LDoc 1.4.6, aconf 0.6.3, 
python2-tkinter 2.7.13, mkinitfs 3.0.9 with support for 
decrypting apkovl, Docker 1.12.6, and Samba 4.5.4. 


The libxpm 3.5.12, BIND 9.10.4-P5, Irssi 0.8.21, libgit2 0.24.6, 
phpMyAdmin 4.6.5.2, MariaDB 10.1.21, Firejail 0.9.44.4, 
Opus-tools 0.1.10, eudev 3.2.1, PCSC-Lite 1.8.20, and Quagga 
1.1.1 packages are also pre-installed in this first maintenance 
update to the major Alpine Linux 3.5 series. 


Source: http://news.softpedia.com/news/alpine-linux-3-5-1- 
released-with-linux-kernel-4-4-45-Its-new-security- 
updates-512317.shtml 


Linux Mint 18.1 “Serena” Xfce and KDE Editions Are 
Officially Out, Download Now 


While the Xfce flavor entered Beta testing earlier this month, 
the Linux Mint developers had to wait a little longer to publish 
the Beta version of Linux Mint 18.1 “Serena” KDE because they 


wanted to offer users access to the latest KDE Plasma 5.8 LTS 
desktop environment from the Kubuntu Backports PPA. 


So basically, Xfce users had to wait for the KDE edition to be 
finished before they were able to download and install the new 
version on their PCs. Both editions benefit from the same long- 
term support services as the main Cinnamon and MATE 
editions released last year. 


Based on the Ubuntu 16.04 LTS (Xenial Xerus) operating 
system, both the Xfce and KDE editions are powered by the 
long-term supported Linux 4.4 kernel, along with linux- 
firmware 1.157.5, and include pretty much the same internals 
as their bigger brothers. Of course, the Xfce flavor uses the 
latest Xfce 4.12 desktop environment with the Whisker Menu 
1.6.2. 


Linux Mint 18.1 Xfce Edition also includes all in-house built 
applications that the Linux Mint developers are creating as part 
of their XApps project, such as Xed text editor, which sports a 
new search bar and various UI improvements, Xplayer video 
player with monitor blanking functionality, as well as Xviewer 
image viewer and Xreader document reader. 


Source: http://news.softpedia.com/news/linux-mint-18-1-serena- 
xfce-and-kde-editions-are-officially-out-download- 
now-512315.shtml 


Bodhi Linux 4.1.0 Ubuntu-based distro now available 
with updated kernel and new theme 


There are so many Linux distributions nowadays, that it can be 
hard to be excited by them. Linux Mint, for example, releases 
too many versions of its operating system; news of an update 
can become rather ho-hum. Major Linux distributions, such as 
Ubuntu and Fedora, remain exciting, however. 


Some smaller Linux-based operating systems are still worthy of 
attention, however, and one such distro is Bodhi. Based on 
Ubuntu, the lightweight OS is very unique thanks to the 
Moksha desktop environment. Because of its familiarity, that 


DE makes Bodhi a smart choice for Windows users looking to 
switch to Linux. Today, Bodhi reaches version 4.1.0. 


While this update isn’t chock full of major changes, the bug 
fixes alone are worth the upgrade. The new theme might only 
be superficial, but I think it looks quite sharp. 


Source: https://betanews.com/2017/01/27/bodhi-linux-4-1-0- 
ubuntu/ 


Canonical Announces LXD 2.8 Pure-Container 
Hypervisor for Ubuntu 16.04 and 14.04 


Canonical announced the availability of the LXD 2.8 pure- 
container hypervisor designed from the ground up to let users 
run unmodified Linux-based operating systems and apps with 
virtual machine-style operations faster than anything else on 
the market. 


LXD 2.8 comes approximately one month after the previous 
maintenance update, and while it’s mostly a bugfix release that 
patches a total of 45 issues reported by users lately, it includes 
a bunch of interesting improvements and new additions, such 
as the ability to use Weblate for its translations. 


It also implements proper reporting of virtual LAN (VLAN) 
device types to the API (Application Programming Interface) 
and client, allows unprivileged users to run the dnsmasq 
instance that LXD uses to manage bridges, and adds support for 
the client to display the date when an LXC image was last used. 


LXD 2.8 also makes exec sessions that are killed by a signal to 
report the respective signal number as part of their exit code 
and delivers an initial rewrite of the Go client API, which 
contains a brand-new API module with all REST API 
definitions. Check out the changelog attached below for details 
about all the bugs fixed in this release. 


Source: http://news.softpedia.com/news/canonical-announces- 
lxd-2-8-pure-container-hypervisor-for-ubuntu- 16-04- 
and-14-04-512279.shtml 


VPN on Android means ‘Voyeuristic Peeper Network’ in 
many cases 


A worrying number of VPN apps for Android mobile devices 
are rife with malware, spying, and code injection, say 
researchers. 

A study from the University of New South Wales in Australia 
and the University of California at Berkeley found that Android 
apps advertising themselves as VPN clients often contain poor 
security protections, and in some cases engage in outright 
malicious activities. 


“Many apps may legitimately use the VPN permission to offer 
(some form of) online anonymity or to enable access to 
censored content,” the researchers write. “However, malicious 
app developers may abuse it to harvest users’ personal 
information.” 


That sort of malicious activity is shockingly common, the 
researchers found. They studied the activity of 283 VPN apps 
on the Google Play store and catalogued the various risky and 
malicious activities they found. 


“Our results show that — in spite of the promises for privacy, 
security and anonymity given by the majority of VPN apps — 
millions of users may be unawarely subject to poor security 
guarantees and abusive practices inflicted by VPN apps,” the 
researchers noted. 


The study concluded that, in addition to users being wary in 
their choice of VPN apps and keeping a close eye on 
permissions, Google should look to help remedy the situation 
by setting stricter limits on what VPN apps are able to do in 
Android. 


Source: https://www. theregister.co.uk/2017/01/28/ 
vpn_on_android_means_voyeuristic_peeper_network/ 


Mozilla Firefox 51.0.1 and Thunderbird 45.7 Land in 
All Supported Ubuntu OSes 


Canonical released both Mozilla Firefox 51.0.1 and 
Thunderbird 45.7.0 to the stable channels of Ubuntu 12.04 LTS 
(Precise Pangolin), Ubuntu 14.04 LTS (Trusty Tahr), Ubuntu 
16.04 LTS (Xenial Xerus), and Ubuntu 16.10 (Yakkety Yak), 
allowing users to enjoy the latest new features and security 
improvements that landed in these updates. 


Mozilla Firefox 51.0 already received its first minor security 
update, versioned 51.0.1, which made the multiprocess 
incompatibility to correctly register with various add-ons, as 
well as to fix geolocation support on Windows systems. 


On the other hand, the Mozilla Thunderbird 45.7.0 email and 
news client is a bugfix and security release that attempts to 
improve the message preview pane with support for renaming 
or moving of IMAP folders, and fixes the “Move To” button on 
the “Search Messages” panel. 


In Thunderbird 45.7, Mozilla’s developers also made it possible 
for the built-in Calendar to accept or decline email invitations 
from email messages that are being stored in the same folder, 
as well as to finally display recipients for emails sent to 
“undisclosed recipients,” which was broken since Thunderbird 
38. 


Source: http://news.softpedia.com/news/mozilla-firefox-5 1-0-1- 
and-thunderbird-45-7-land-in-all-supported-ubuntu- 
oses-512335.shtml 


Self-protection is key to Linux kernel security 


Linux has quietly taken over the world. The working system 
now powers the massive datacenters that make all our cloud 
purposes and providers potential, together with billions of 
Android units and internet-connected devices that comprise the 
web of issues (IoT). Even the techniques that deal with the day- 
to-day operations on the International Space Station run Linux. 


The truth that Linux is in all places makes kernel safety the 
very best precedence. A problem within the kernel can simply 
create ripples which are felt by virtually everybody. 


Discovering and fixing vulnerabilities within the kernel is just 
one facet of Linux safety; enabling the kernel to face up to 
assaults is much more very important. 


Source: http://www.networkworld.com/article/3161943/security/ 
self-protection-is-key-to-linux-kernel-security.html#tk.rss_security 


Mesa 12.0.6 Hits the Ubuntu 16.04 LTS and Ubuntu 
16.10 Proposed Repositories 


It would appear that Mesa 12.0.6 3D Graphics Library, which 
was announced last week by Collabora’s Emil Velikov, has 
already hit the xenial-proposed and yakkety-proposed channels 
of the Ubuntu 16.04.1 LTS (Xenial Xerus) and Ubuntu 16.10 
(Yakkety Yak) operating systems. 


So if you have the proposed repository (pre-release updates) 
enabled on your Ubuntu PC, you could update to Mesa 12.0.6 
right now by enabling proposed updates in Software & 
Updates. However, Mesa 12.0.6 being the last in the series, it’s 
recommended that you move to the Mesa 13 branch from a 
stable third-party PPA, such as Padoka Stable Mesa. 


With that in mind, and considering the fact that Canonical will 
release the second Ubuntu 16.04 LTS point release in only 
three days, it would appear that Xenial users will stick with 
Mesa 12.0.6 after all and not a recent Mesa 13 version as 
initially believed. But, it looks like users will get newer Mesa 
builds soon after the launch of Ubuntu 16.04.2 LTS. 


Source: http://news.softpedia.com/news/mesa-12-0-6-hits-the- 
ubuntu-16-04-lts-and-ubuntu- 16-10-proposed- 
repositories-5 12358.shtml 


Linux devices with standard settings infected by 
Linux.Proxy.10 malware 


The Linux operating system was once known to be the most 
secure OS in the world, but things have changed since security 
researchers have found malware like Mirai and Bashlite 
infecting Linux-devices turning them into DDoS botnets. Now, 


another malware has been discovered targeting Linux. 


Dubbed Linux.Proxy.10 by researchers at Dr. Web; the malware 
has been developed to run Socket Secure (SOCKS), an Internet 
protocol that routes network packets between a client and 
server through a proxy server by freeware source code of the 
Satanic Socks Server. 


According to Dr. Web’s blog post, “To distribute 
Linux.Proxy.10, cybercriminals log into the vulnerable devices 
via the SSH protocol, and at the same time the list of devices, 
as well as the logins and passwords («IP address: login: 
password») that go with them, are stored on their server.” 


Based on its pattern, researchers noted that Linux.Proxy.10 
takes over those devices which are already infected with 
another malware or have standard settings. The Linux.Proxy10 
also comes with BackDoor.TeamViewer, a Spy-Agent 
administrator panel and a build of Windows malware from a 
known family of Trojan spyware. 


Source: https://www.hackread.com/new-linux-malware-linux- 
proxy-10/ 


Ubuntu 17.04 “Zesty Zapus” Alpha 2 Released, ISO And 
Torrent Files Available 


You might be knowing that Ubuntu 17.04 Alpha 1 was 
scheduled to arrive on December 29. But, as the developers 
were busy due to the Christmas and New Year holidays, they 
canceled the first Alpha and planned to release the next Alpha. 


Now, Canonical has released the second and final Alpha of 
Ubuntu 17.04 Zesty Zapus. You might find the naming a little 
absurd as it’s just the first Alpha. Well, this is how things are. 


For the Ubuntu 17.04 Alpha 2 release, the participating flavors 
are Lubuntu, Ubuntu MATE, Ubuntu GNOME, Kubuntu, Ubuntu 
Kylin, and Ubuntu Budgie. Notably, this release marks the first 
Budgie testing snapshot after it became an official Ubuntu 
flavor. 


Ubuntu 17.04 comes loaded with many software updates that 
are ready for testing. Also, these builds are powered by Linux 
kernel 4.9. 


Specifically, Ubuntu GNOME 17.04 Alpha 2 ships with GNOME 
3.22 and Ubuntu Budgie 17.04 ships with Budgie 10.2.9. 


Source: https://fossbytes.com/ubuntu-17-04-alpha-2/ 


Meet the $114,725 Ubuntu server with eight Nvidia 
Tesla P100 GPUs 


The Ibex Pro is one supercharged machine that will probably 
hurt your electric bill. 


System76’s fastest Ibex Pro with Ubuntu Server 16.10 packs 
some crazy horsepower with Intel’s latest 22-core Xeon E5 v4 
chips and eight Nvidia Tesla P100 graphics processors. 


It’s got the same number of GPUs as Nvidia’s superfast DGX-1, 
which is being used for deep learning. System76 is targeting 
the Ibex Pro — which is a rack server — at the same market as 
the DGX-1. The server has fewer, but newer, CPUs, compared 
to the DGX-1. 


An entry-level Ibex Pro priced at US $9,575 will run Ubuntu 
Server 16.10, with a six-core Intel Xeon E5-2603v4 chip, 16GB 
of memory, a Tesla K40 GPU, and 250GB of storage. 


A fully loaded system is priced at $114,725, and will come 
with two 22-core Xeon E5-2699v4 CPUs, 1.5TB of DDR4 
DRAM, eight Tesla P100 GPUs, 2TB of NVMe-based SSD 
storage, and an additional 32TB of SSD storage. 


System76 has made its name as an Ubuntu PC maker, but the 

Ibex Pro is one of its handful of Ubuntu servers. The server is 

targeted at companies looking to implement machine learning 
for tasks like speech and image recognition. 


Source: http://www.pcworld.com/article/3163019/computers/ 
meet-the-114725-ubuntu-server-with-eight-nvidia-tesla-p100- 


gpus. html 
A Look at What’s Next for Ubuntu Linux in 2017 


Mark Shuttleworth’s company Canonical has been developing 
Ubuntu Linux for more than a decade, with two new major 
milestone releases debuting every year. In 2017, the first 
release will be Ubuntu 17.04, codenamed the ‘Zesty Zapus’ set 
to debut in April. The big question that Ubuntu Linux fans have 
though is what the Ubuntu 17.10 release will be called, when it 
is released in October. 


In a video interview, Shuttleworth provides some insight into 
how he will handle naming for Ubuntu, after the 17.04 release 
and the end of the alphabet with the letter Z. Ubuntu has been 
following a logical alphabetical progression for code names and 
with the 17.04 Zesty Zapus release, a new approach will be 
needed. 


Beyond just the somewhat trivial nature of what the Ubuntu 
17.10 release will be named, Shuttleworth also provided some 
direction on how the Ubuntu Linux distribution will evolve and 
progress over the course of 2017. One area where he expects 
Ubuntu to continue to grow is with the emerging internet of 
things (loT) world. 


Ubuntu Core is a version of Ubuntu that has been optimized for 
small form factor and embedded device deployments, while 
Snappy is an open-source packaging approach that helps to 
enable rapid updates. The security elements of IoT are a 
primary concern to Shuttleworth and it’s an area where he sees 
Snappy playing a role in keeping devices and users safe. 


The other area that Ubuntu continues to work on is its LXD 
hypervisor for enabling increased container density and 
security. The LXD effort was first announced in November 2014 
and has been steadily improving ever since. 


Source: http://www. eweek.com/enterprise-apps/a-look-at-whats- 
next-for-ubuntu-linux-in-2017.html 


You’re taking the p... Linux encryption app Cryptkeeper 
has universal password: ‘p’ 


Linux encryption app Cryptkeeper has a bug that causes it to 
use a single-letter universal decryption password: “p”. 


The flawed version is in Debian 9 (Stretch), currently in testing, 
but not in Debian 8 (Jessie). The bug appears to be a result of a 
bad interaction with the encfs encrypted filesystem’s command 
line interface: Cryptkeeper invokes encfs and attempts to enter 
paranoia mode with a simulated ‘p’ keypress — instead, it sets 
passwords for folders to just that letter. 


Cryptkeeper’s developer appears to have abandoned the 
project. Luckily, it’s not used by that many people - although it 
makes the bug no less tragically hilarious. 


However, encfs is executed with the -S switch which means it’s 
supposed to read the password from stdin without a prompt. 
Previously, encfs was bugged and didn’t quite do this. A bugfix 
corrected its operation to match its documentation — which 
made it incompatible with Cryptkeeper’s assumptions. 


So that’s why Cryptkeeper sets all its directory passwords to 
“p”: encfs was updated and that broke Cryptkeeper’s interface. 
Debian developer Simon McVittie has recommended the app be 


pulled from the Linux distro entirely. 


Source: https://www. theregister.co.uk/2017/01/31/ 
cryptkeeper_cooked/ 


CentOS 7.3 (1611) Linux Distro Now Available for 32- 
Bit (1386) Architectures 


CentOS developer and maintainer Johnny Hughes announced 
the immediate availability of the latest CentOS 7.3 (1611) 
GNU/Linux operating system for the 32-bit (i386) hardware 
architecture. 

If some of the most popular GNU/Linux distributions have 
started dropping support for 32-bit (i686/x86) installations or 
plan to do so in the near future, many are still installable on 


older computers from 10 years ago. 


CentOS 7.3 (1611) is the latest addition to the list of 32-bit 
supported Linux-based operating systems, thanks to a group of 
hard working people from the CentOS AltArch SIG initiative 
trying to create alternative architecture support for CentOS 
Linux. 


The good news, however, is that today’s release of CentOS 7.3 
(1611) Linux distro for 32-bit hardware architectures also 
comes with a couple of Live ISO images bundled with the 
GNOME and KDE desktop environments.- 


Source: http://news.softpedia.com/news/centos-7-3-16 1 1-linux- 
distro-now-available-for-32-bit-i386-architectures-5 12400.shtml 


Latest Ubuntu Update Includes OpenSSL Fixes 


Ubuntu users are being urged to update their operating systems 
to address a handful of recently patched OpenSSL 
vulnerabilities which affect Ubuntu and its derivatives. 


Developers with Canonical, the company that oversees the 
Linux distribution, announced the updates on Tuesday, 
encouraging users to install the latest OpenSSL package 
versions depending on which distribution they’re running. 


The updates resolve several of the vulnerabilities fixed by the 
cryptographic library OpenSSL last Thursday. 


The update also fixes an issue in which OpenSSL used 
“undefined behavior when performing pointer arithmetic,” and 
another in which it incorrect handled certain warning alerts. A 
remote attacker could exploit both vulnerabilities and cause a 
denial of service, according to Ubuntu’s advisory. 


Source: https://threatpost.com/latest-ubuntu-update-includes- 
openssl-fixes/123513/ 


Canonical Releases Snapcraft 2.26 Snap Creator Tool 
for Ubuntu 16.04 LTS, 16.10 


Snappy is Canonical’s application sandboxing and distribution 
framework and Snap is a universal binary format designed to 
allow devs to distribute their apps across multiple Linux-based 
operating systems without having to create a special package 
for each distro. Snapcraft is the tool to build the Snap packages. 


The latest version, Snapcraft 2.26, comes approximately two 
weeks after the release of version 2.25 and promises to 
introduce a bunch of new features, such as support for GUI 
(Graphical User Interface) in Snaps, a new plugin directory 
location, support for snapcraft.yaml in a Snap directory, as well 
as support for go-packages. 


Snapcraft 2.26 also removes the snapd “submodule,” makes 
sure snap.yaml is desktop free, implements proper error colors 
for login failures to the Snappy Store, fixes sso_host for 
developer single sign-on (SSO), adds support for gradle and 
gradlew to the Gradle plugin, and introduces the use of an XDG 
directory for sources. 


Among other noteworthy features implemented in the 
Snapcraft 2.26 release, we can mention support for adding 
Ubuntu users to sudoers on every ADT platform for tests, multi- 
arch support for stage packages, the ability to preserve 
symlinks to directories for sources, and support for the Python 
plugin to download all required packages with a single 
command. 


Source: http://news.softpedia.com/news/canonical-releases- 
snapcraft-2-26-snap-creator-tool-with-gui-support-in- 
snaps-512453.shtml 


The new Dell XPS 13 Developer Edition is the little 
Linux laptop that can 


Installing Linux on a laptop is one of the biggest stumbling 
blocks to adoption of the OS. After all, taking a perfectly good 
PC, nuking Windows, and replacing it with an unfamiliar OS 
can seem a lot like performing open-heart surgery to an 
inexperienced user. When you take into account that there are 
precious few laptops with Linux preinstalled, it’s no wonder 


that desktop Linux adoption numbers are so grim. (There are 
other reasons too, but I won’t go into those here.) 


One of the few laptops to come correct with a Linux OS is 
Dell’s XPS 13 Developer Edition. I got a chance to benchmark 
the 2015 model a few months ago, and really enjoyed playing 
with the little ultrabook. Physically, it’s virtually identical to 
the consumer version of the XPS 13, only it came loaded with 
Ubuntu 14.04. Flash forward, and Dell has updated its 
Developer Edition with Intel’s Kaby Lake CPU and Ubuntu 
16.04. I have to say, there’s not much to dislike about the 
revamp. 


Source: http://www.pcworld.com/article/3161861/linux/the-new- 
dell-xps-13-developer-edition-is-the-little-linux-laptop-that-can. html 


Arch Linux 2017.02.01 Available For Download — Last 
ISO Release With 32-bit Support 


The Arch Linux devs have rolled out their freshly baked Arch 
Linux 2017.02.01 ISO images. This release is an important one 
as it’s the last ISO shipping with the support for 32-bit 
architecture. After this, future releases will only run on 64-bit 
machines. Powered by Linux kernel 4.9.6, the users can grab 
the images from Arch’s download page. The existing users have 
the option to perform an upgrade by running a single 
command. 


Arch Linux is famous for being a highly customizable Linux 
distribution. The die-hard Linux fans love it. Also, it’s a well- 
established fact that installing Arch Linux needs more time and 
commitment, as compared to other beginner-friendly Linux 
distros. However, this feature, surprisingly, makes it a 
recommended Linux distro for a beginner user. Well, that’s the 
beauty of Linux where learning is an integral part of the 
experience. 


Source: https://fossbytes.com/arch-linux-2017-02-01-released- 
feature-download/ 


Five New Linux Kernel Vulnerabilities Patched in 
Ubuntu 16.10 for Raspberry Pi 2 


Canonical announced a few hours ago the availability of a new 
security update for the Raspberry Pi 2 kernel packages of the 
Ubuntu 16.10 (Yakkety Yak) operating system, which patches a 
total of five newly discovered vulnerabilities. 


If you’re using Ubuntu 16.10 on a Raspberry Pi 2 device, you 
are urged to update the kernel package to version linux- 
image-4.8.0-1024-raspi2 4.8.0-1024.27, which is now available 
for installation in the stable software repositories of the 
operating system. To update, simply run the “sudo apt update 
& sudo apt dist-upgrade” command in a terminal emulator. 


Source: http://news.softpedia.com/news/five-new-linux-kernel- 
vulnerabilities-patched-in-ubuntu- 16-10-for-raspberry- 
pi-2-512823.shtml 


Android Wear 2.0 uses offline AI for its smart replies 


One of the new features on Android Wear 2.0 is Smart Reply, 
which suggests responses to messages that you can quickly tap 
if you’re busy doing something else. In its research blog, 
Google explained that the feature uses on-device machine 
intelligence, so it works even if you don’t have an internet 
cloud connection. While the researchers initially thought doing 
that would be impossible, the “Expander” AI team saw it as a 
unique opportunity. 


The researchers were surprised at how well it works on 
Android Wear devices, which aren’t renowned as computing 
powerhouses, and plans to use the AI algorithms behind it to 
“enable completely new applications in the months to come.” 
As with Google’s very similar Gmail-based smart replies, 
however, be sure to only use it when needed — even with AI 
smarts, the person on the other end can tell it’s not you. 


Source: https://www.engadget.com/2017/02/10/android- 


wear-2-0-uses-offline-ai-for-its-smart-replies/ 


antiX 17 Linux Operating System Gets New Alpha Build, 
Now Uses Kernel 4.9.6 


antiX 17 Linux Alpha 2 is here a little over two weeks after the 
release of the first Alpha build, and it looks like it rebases the 
kernel packages on Linux 4.9.6, which has been customized by 
the development team with extra drivers, etc. The Linux kernel 
headers are included as well, but please note that this is not a 
Linux-libre kernel. 


Also included in the second Alpha images of antiX 17 Linux are 
a bunch of tools that some of you might find useful. For 
example, there’s a command-line remastering utility for 
creating your own antiX Live system, a command-line installer, 
as well as a live-usb-maker tool for creating Live USB sticks 
with antiX or other distros. 


Source: http://news.softpedia.com/news/antix- 17-linux-operating- 
system-gets-new-alpha-build-now-uses-kernel-4-9-6-512837.shtml 


Escuelas Linux 5.1 Officially Released with LibreOffice 
5.3 and Vivaldi Browser 


As the Escuelas Linux developers have explained, Escuelas 
Linux 5.1 ships with so many changes that it’s hard to list them 
all in a single story. However, we think that the best new 
feature of this major update is the ability for users to customize 
the Escuelas Linux desktop as they see fit. The default desktop 
environment remains the lightweight Enlightenment ported 
from the Bodhi Linux distribution. 


Escuelas Linux 5.1 comes with many of the latest open source 
applications, including but not limited to the LibreOffice 5.3, 
FreeOffice 2016 and OnlyOffice office suites, Rosa Media 
Player, LibreCAD CAD application, Openshot video editor, 
Minetest Minecraft game, LiveCode cross-platform rapid app 
development runtime environment, as well as GeoGebra free 
dynamic mathematics software. 


Source: http://news.softpedia.com/news/escuelas-linux-5-1- 
officially-released-with-libreoffice-5-3-and-vivaldi- 
browser-512801.shtml 


FFmpeg 3.2.4 “Hypatia” Open-Source Multimedia 
Framework Available for Download 


FFmpeg 3.2.4 is the fourth update to the FFmpeg 3.2 “Hypatia” 
stable series, and it’s here to address a total of five reported 
bugs, including the clearing of ref_counts on redundant slices 
for h264 slice, a heap allocation wrap in both mov_read_uuid 
and mov_read_hdlr, a logic error pictordec, and setup of 
codecpar in add_codec(). 


The new version also includes the libavutil 55.34.100, 
libavcodec 57.64.101, libavformat 57.56.100, libavdevice 
57.1.100, libavfilter 6.65.100, libavresample 3.1.0, libswscale 
4.2.100, libswresample 2.3.100, and libpostproc 54.1.100 
library versions. As usual, you should check out the full Git 
changelog for all the technical details about the changes. 


Source: http://linux. softpedia. com/blog/ffmpeg-3-2-4-hypatia- 
open-source-multimedia-framework-available-for- 
download-512839.shtml 


Capsule8 Launches Linux-Based Container Security Platform 
Cybersecurity startup Capsule8 this week announced that it has 
raised US$2.5 million to launch the industry’s first container- 
aware, real-time threat protection platform designed to protect 
legacy and next-generation Linux infrastructures from existing 
and potential attacks. 


CEO John Viega, CTO Dino Dai Zovi and Chief Scientist 
Brandon Edwards, all veteran hackers, cofounded the firm. 
They raised seed funding from Bessemer Venture Partners, as 
well as individual investors Shandul Shah of Index Ventures 
and ClearSky’s Jay Leek. 


Capsule8 is solving the difficult problem of providing zero-day 
threat protection for Linux, whether it be legacy, container or 
some combination of the two, he added. 


Windows protection tends to focus on “find the bad 
executable,” which makes sense in that environment because 
bad executables are ubiquitous in an attack, noted Capsule8’s 
Viega. 


However, that approach doesn’t work well in a Linux 
environment, so Capsule8 focuses on detecting and protecting 
against system compromise, he told LinuxInsider. 


Source: http://www. technewsworld.com/story/84297.html 


Google hints at Assistant coming to existing Android 
devices 


It’s very likely that you’ll see Google Assistant on new Android 
devices beyond the Pixel line, but when... and what about the 
device you already have? The AI helper might be coming 
sooner than you think. Google has inadvertently given beta 
testers an alpha release of its Android search app that enables 
Assistant support on non-Pixel hardware. It’s not working for 
everyone, but people carrying everything from the Nexus 6P to 
Alcatel’s Idol 4S say they’ve had success. The software has 
introductory messages that are clearly targeted at people who 
previously didn’t have Assistant, so it’s not an accidental 
inclusion. 


The alpha also includes a recent topics section that revisits 
recent searches, previously mentioned support for payments 
(not that it’s useful without providers) and a data-saving Lite 
mode that optimizes pages. 


Source: https://www. engadget.com/2017/02/1 1/google-assistant- 
expansion-leak/ 


Linux poll results: And the winners are... 


The votes are in. LinuxQuestions, one of the largest Linux 
groups with 550,000 members, has just posted the results from 
its latest poll. The winner for the most popular desktop 
distribution? Slackware! 


If that sounds a little odd, it is. On DistroWatch, a site that 
covers Linux distributions like paint, the top Linux desktop 
distros are Mint, Debian, Ubuntu, openSUSE, and Manjaro. 
Slackware comes in 28th place. 


So why the discrepancy? With more than double the votes for 
any category, it appears there was vote-stuffing by Slackware 
fans. 

Linux users love to debate about desktop environments. KDE 
Plasma Desktop took first by a hair’s breadth over the popular 
lightweight Xfce desktop. Other well-regarded desktop 
environments, such as Cinnamon and MATE, got surprisingly 
few votes. The once popular GNOME still hasn’t recovered from 
the blowback from its disliked design change from GNOME 2 to 
GNOME 3. 


Source: http://www.zdnet.com/article/linux-poll-results-and-the- 
winners-are/ 


Canonical Now Offers Mesa 13.0.4 for Ubuntu 16.04 
LTS and Ubuntu 16.10 in a PPA 


As we reported earlier this week, the soon-to-be-released 
Ubuntu 16.04.2 LTS (Xenial Xerus) operating system won’t ship 
with the latest Mesa 13.0.x 3D Graphics Library, but with Mesa 
12.0.6. 


If you’ve read our previous report, you know that we provided 
users with detailed instructions on how to upgrade their Mesa 
graphics stack from version 12.0.6 to 13.0.4, but it now looks 
like Canonical’s Timo Aaltonen has prepared a PPA (Personal 
Package Archive) for Ubuntu 16.04 LTS and Ubuntu 16.10 with 
Mesa 13.0.4. 


“Mesa 13.0.x is not going to be in 16.04 LTS. And it has only 
been days since it received the ‘dated’ 12.0.6 release as an SRU 
together with 16.10,” said Timo Aaltonen, Hardware 
Enablement, Field Expert Squad Team Lead at Canonical. “That 
said, 13.0.4 is now available on ppa:ubuntu-x-swat/updates for 
both 16.04 and 16.10.” 


Canonical’s Mesa 13.0.4 is compiled against LLVM 3.9.1, here’s 
how to install it. 


In the blog announcement, Timo Aaltonen informs those who 
are interested in bumping their Mesa 3D Graphics Library 
version to the 13.0 series that the packages are compiled 
against LLVM 3.9.1, which adds various improvements for 
AMD Radeon users. 


Source: http://news.softpedia.com/news/canonical-now-offers- 
mesa-13-0-4-for-ubuntu-16-04-lts-and-ubuntu-16-10-in-a- 
ppa-512853.shtml 


Ktube Media Downloader Is a Powerful App to 
Download YouTube Videos on Ubuntu 


Ktube Media Downloader appears to be the successor of 
Ultimate Media Downloader, another video downloader utility 
that the developer created a long time ago. However, the new 
app is a lot more powerful, featuring a modern and dark 
graphical user interface, and lots of attractive new features. 


Designed as a freeware app, Ktube Media Downloader will 
allow users to browse and download YouTube videos on their 
Ubuntu desktops. All of its powerful features are offered for 
free, but you'll only be able to download up to two videos daily 
as the developer wants you to pay approximately $3 USD to 
unlock the full version. 


Source: http://news.softpedia.com/news/kube-media-downloader- 
is-a-powerful-app-for-downloading-youtube-videos-on- 
ubuntu-5 12900. shtml 


New Android trojan mimics user clicks to download 
dangerous malware 


Android users have been exposed to a new malicious app 
imitating Adobe Flash Player that serves as a potential entrance 
for many types of dangerous malware. The application, 
detected by ESET security software as Android/ 
TrojanDownloader.Agent.JI, tricks its victims into granting it 


special permissions in the Android accessibility menu and uses 
these to download and execute additional malware of the 
attackers’ choice. 


According to our analysis, the trojan targets devices running 
Android, including the latest versions. It is distributed via 
compromised websites — adult video sites, but also via social 
media. Under the pretense of safety measures, the websites lure 
users into downloading a fake Adobe Flash Player update. If 
the victim falls for the legitimate-looking update screen and 
runs the installation, they have more deceptive screens to look 
forward to. 


The next phony screen pops up following successful 
installation, claiming “too much consumption of energy” and 
urging the user to turn on a fake “Saving Battery” mode. Like 
most malicious pop ups, the message won’t stop appearing until 
the victim gives in and agrees to enable the service. This opens 
the Android Accessibility menu, showing a list of services with 
accessibility functions. Among the legitimate ones, a new 
service (created by the malware during installation) named 
“Saving battery” appears. The service then requests permissions 
to Monitor your actions, Retrieve window content and Turn on 
Explore by Touch — all crucial for future malicious activity, 
enabling the attacker to mimic the user’s clicks and select 
anything displayed on their screen. 


Source: http://www. welivesecurity.com/2017/02/14/new- 
android-trojan-mimics-user-clicks-download-dangerous-malware/ 


Nvidia 378.13 Linux Graphics Driver Lets Users View 
Configured PRIME Displays 


Among the newly supported GPUs by Nvidia 378.13 graphics 
driver, we can mention Nvidia Quadro P400, Nvidia Quadro 
P600, Nvidia Quadro P1000, Nvidia Quadro P2000, Nvidia 
Quadro P3000, Nvidia Quadro P4000, Nvidia Quadro GP100, 
Nvidia Quadro M1200, and Nvidia Quadro M2200. 


The new proprietary graphics driver also updates the Nvidia- 
settings control panel to allow users to view configured PRIME 


displays, enables OpenGL threaded optimizations by default, 
and supports the VK_KHR_display and 
VK_KHR_display_swapchain Vulkan extensions. 


The Nvidia 378.13 graphics driver also comes with a new 
infrastructure that makes it possible for the Nvidia EGL driver 
to load external EGL API platform libraries providing client- 
side support for new window systems. It also implements 
support for X.Org Server 1.19 or later (ABI 23). 


To properly handle UEFI framebuffer consoles that have a 
physical address more than 4GB, the Nvidia graphics driver 
now supports the screen_info.ext_lfb_base field on Linux kernels 
that offer this functionality. Additionally, to allow multi- 
threaded compilation of GLSL shaders, the driver now supports 
the ARB_parallel_shader_compile extension. 


Last but not least, Nvidia 378.13 disables OpenGL threaded 
optimizations for Xinerama, and fixes a handful of bugs 
discovered since the previous stable release, which you can 
view in the attached changelog. 


Source: http://news.softpedia.com/news/nvidia-378-13-linux- 
graphics-driver-lets-users-view-configured-prime- 
displays-512939.shtml 


GPD Pocket: This Tiny Laptop Fits In Your Pocket, Runs 
Ubuntu Linux And Windows 10 


GPD has launched the Indiegogo campaign for GPD Pocket, a 7- 
inch laptop that’s powered by Intel Atom processor. You can 
easily carry it around in your pocket and run Windows 10 or 
Ubuntu Linux on it. The device recently debuted on Indiegogo 
and achieved its goal in the first few hours. GPD Pocket’s 
Windows 10 Home and Ubuntu 16.04 LTS versions can be 
grabbed by spending $399. 


GPD is known for making handheld gaming consoles that 
operate on Android operating system. Now, the company has 
decided to try out something new and create a full-fledged 
laptop that’s able to run a desktop operating system like 


Microsoft Windows 10 and Ubuntu Linux. 


GPD Pocket is powered by Intel Atom x7-Z8700 Cherry Trail 
processor-something that’s just fine for getting the basic work 
done. You’ll get 128GB storage and 4GB RAM. The 7-inch 
touch screen of GPD Pocket also has Gorilla Glass 3 protection. 


The 7000mAh polymer lithium battery gives this device a 12- 
hour battery life. 


Source: https://fossbytes.com/gpd-pocket-crazy-laptop-fits-pocket- 
runs-ubuntu-windows-10/ 


Here’s a sneak peek at LibrePlanet 2017: Register today! 


In just six weeks, on March 25 & 26, 2017, free software 
hackers, lawyers, activists, students, educators, librarians, and 
community organizers will gather at the Massachusetts Institute 
of Technology (MIT) to explore the roots of software freedom. 
Will YOU be there? 

Don’t delay: Register today to ensure that you will attend 
LibrePlanet 2017: The Roots of Freedom. Remember, FSF 
members and students attend gratis. 


Hundreds of people from across the planet will gather at 
LibrePlanet 2017: The Roots of Freedom at MIT in Cambridge, 
Massachusetts. This year’s conference speakers will examine 
the foundations of software freedom and the ideas and projects 
they inspired. 


Four keynote speakers will anchor the event. Kade Crockford, 
director of the Technology for Liberty program of the American 
Civil Liberties Union of Massachusetts, will kick things off on 
Saturday morning by sharing how technologists can enlist in 
the growing fight for civil liberties. On Saturday night, Free 
Software Foundation president Richard Stallman will present 
the Free Software Awards and discuss pressing threats and 
important opportunities for software freedom. 


Day two will begin with Cory Doctorow, science fiction author 
and special consultant to the Electronic Frontier Foundation, 


revealing how to eradicate all Digital Restrictions Management 
(DRM) in a decade. The conference will draw to a close with 
Sumana Harihareswara, leader, speaker, and advocate for free 
software and communities, giving a talk entitled “Lessons, 
Myths, and Lenses: What I Wish I’'d Known in 1998.” 


Each year at LibrePlanet, we gather software developers, 
activists, policy experts, and computer users to share 
accomplishments, learn skills, and address challenges to 
software freedom. Newcomers are always welcome, and 
LibrePlanet 2017 will feature programming for a broad range 
of experience levels, including students. 


Source: https://www.fsf.org/blogs/community/heres-a-sneak-peek- 
at-libreplanet-2017-register-today 


New Attack Threatens Android For Work Security 


A newly discovered “app-in-the-middle” attack threatens the 
security of business data stored in Android for Work, which 
was designed to keep business and personal accounts separate. 


The premise behind Android for Work, introduced in version 
5.0 Lollipop, was to support the growth in bring-your-own- 
device (BYOD) policies. Users create two separate personas: a 
business persona with enterprise-level controls, and an open, 
unmanaged personal profile. 


Enterprise apps, emails, and documents could be managed and 
secured through the business persona so admins wouldn’t be 
able to monitor their personal apps. IT departments could 
manage their environments for work activities without 
restricting personal apps. 


The platform relied on Android’s user separation functionality, 
which allows different users to employ the same device. Work 
profiles are considered separate users, but they share icon 
badges and notifications with the personal profile. 


It was a seemingly secure framework. Android for Work was 
created as an additional secure container so apps in the 


device’s personal profile should not have any access to the 
activity or content in the business persona. 


Unfortunately, this isn’t the case. At this year’s RSAC, Skycure 
will demonstrate how a vulnerability in the separation logic of 
Android for Work can let malicious personal apps to view, 
steal, and manipulate apps and content that should be secured 
in the business profile. 


Source: http://www. darkreading.com/mobile/new-attack- 
threatens-android-for-work-security/d/d-id/ 1328180 


Firefox Nightly and Wayland Builds Are Now Available 
for Download as Flatpaks 


About a month ago, we told you that Red Hat’s desktop 
engineering manager Jifi Eischmann was working on packaging 
the Mozilla Firefox Developer Edition web browser as a Flatpak 
for various GNU/Linux distros supporting the sandboxing 
technology. 


Five weeks later, the developer wrote today a new blog post to 
inform the Linux community that he managed to also package 
the Firefox Nightly and Firefox Wayland builds as Flatpak 
packages for distribution on Fedora 25 and Ubuntu 16.10 
(Yakkety Yak) operating systems, as well as other OSes that 
offer Flatpak support, of course. 


The developer warns those who want to use the Wayland build 
of Firefox Nightly that it’s very experimental and it could crash 
quite often. Also, you should know that you need to run the 
next-generation Wayland display server (not X11) on your 
GNU/Linux distribution before even attempting to install the 
Flatpak. 


It also looks like the copy/paste functionality is missing from 
the Firefox Wayland build, so treat it like an early development 
version. However, when the final release of the Mozilla Firefox 
for Wayland sees the light of day, it will be a huge step in 
security for Firefox on Linux because Wayland isolates the 
input and output of every app. 


Source: http://news.softpedia.com/news/firefox-nightly-and- 
wayland-builds-are-now-available-for-download-as- 
flatpaks-512981.shtml 


Linux Mint 18.2 to Come with a Revamped Bluetooth 
Panel, Updated Xplayer and Xed 


In the good tradition of these monthly newsletters, Clement 
Lefebvre sends his deepest appreciation and thanks to all those 
who donated money to Linux Mint, and then teases users with 
the upcoming design of the Bluetooth panel, which will be 
implemented in the next major release of the OS, namely Linux 
Mint 18.2. 


The updated Bluetooth panel comes with out-of-the-box for 
OBEX file transfers, a stack switcher in the toolbar, as well as 
new settings that allow Linux Mint users to change the name of 
the Bluetooth name of their computer and enable or disable file 
transfer from remote devices. 


Linux Mint’s X-Apps project received some work lately, in 
particular for the Xed text editor and Xplayer video player 
applications. For example, Xed now lets users enable or disable 
the Word wrap feature more easily, directly from the app 
menu, as well as to select lines of text and sort them using the 
F10 key or the Sort Lines option in the Edit menu. 


Moreover, it’s possible to zoom in and out using keyboard 
shortcuts, the app menu, or the mouse wheel, regular 
expressions are now supported in the built-in search function, 
switch between multiple opened tabs using the mouse wheel, 
and the ability to select if the user interface is using a dark or 
light theme. 


Those who want to port their Gedit 3.x extensions to Xed 
should know that Python extensions are now supported. On the 
other hand, the Xplayer media player received an update to its 
user interface that places the controls and the seeker bar on the 
same line, and removes the status bar for a more compact 
design. 


Source: http://news.softpedia.com/news/linux-mint-18-2-to-come- 
with-a-revamped-bluetooth-panel-updated-xplayer-and- 


xed-513074. shtml 


Linux Kernel 4.10 Released With New Features And 
Updated Drivers 


Linus Torvalds has finally released Linux kernel 4.10. The latest 
release is a result of seven weeks of hard work and 13,000 
commits. Kernel 4.10 features improvements to AMDGPU DRM 
and Nvidia DRM driver, better hardware support, initial Intel 
Graphics Virtualization Technology support, etc. You can go 
ahead and grab kernel 4.10 from kernel. org. Well, as expected, 
Linux boss Linus Torvalds has released Linux kernel 4.10 after 
rolling out eight release candidates. The latest release comes 
loaded with lots of improved hardware support and some new 
features. 


In his release announcement, Linus writes how Linux kernel 
4.10 didn’t end up being as small as it initially looked. Just like 
everybody else, Linus expected a smaller 4.10 release after 
releasing Linux kernel 4.9, the biggest ever kernel release in 
terms of commits. Specifically, Linux kernel 4.10 is a result of 
13,000 commits, excluding the merges. 


“Tt’s been quiet since rc8, but we did end up fixing several 
small issues, so the extra week was all good,” Linus adds in his 
announcement post. Linus urges you to go and try out the latest 
kernel and verify if all is good. 


Source: https://fossbytes.com/linux-kernel-4-10-released-new- 
features/ 


budgie-remix 16.04.2 Comes Equipped with the HWE 
Kernel from Ubuntu 16.04.2 LTS 


What’s budgie-remix 16.04.2, you may wonder? Well, as 
Ubuntu Budgie did not yet have a stable release, and because 
many people are still using the distro on their PCs with its 
previous name (budgie-remix), the developers updated it to be 
based on the recently released Ubuntu 16.04.2 LTS (Xenial 
Xerus) operating system. 


Being based on Ubuntu 16.04.2 LTS, which inherits the newer 
Linux 4.8 kernel and an updated graphics stack based on Mesa 
12.0 3D Graphics Library from Ubuntu 16.10 (Yakkety Yak), 
budgie-remix 16.04.2 comes equipped with its HWE kernel and 
graphics stack, as well as the latest Budgie 10.2.9 desktop 
environment. 


Another novelty introduced in the budgie-remix 16.04.2 release 
is the enablement by default of Appindicators, which enables 
various indicators supported by Ubuntu Linux to be displayed 
in the system tray area of the Budgie desktop. Newcomers to 
this OS will also find the latest budgie-welcome app to help 
them get started faster. 


Apart from numerous updated packages and all the latest 
security patches imported from the Ubuntu 16.04.2 LTS (Xenial 
Xerus) repositories, budgie-remix 16.04.2 includes a tool that 
lets users choose their favorite web browser, if they are 
supported by Ubuntu, of course. 


Source: http://news.softpedia.com/news/budgie-remix-16-04-2- 
comes-equipped-with-the-hwe-kernel-from-ubuntu- 16-04-2- 
Its-5 13079. shtml 


Canonical Outs Snapcraft 2.27 Snap Creator Tool for 
Ubuntu 16.10 & Ubuntu 16.04 


The Snap format is becoming more and more popular for 
Ubuntu, but also for various other GNU/Linux operating 
systems that decided to adopt the universal binary format 
developed by Canonical, so Snapcraft being the tool to create 
these Snaps, it is always getting new features and important 
improvements. 


Snapcraft 2.27 is here a little over two weeks after the release 
of Snapcraft 2.26, and it couldn’t be possible without the great 
work of many contributors, including Colin Watson, Marco 
Trevisan, John Lenton, Kit Randel, and Loic Minier. New in this 
release are a bunch of enhancements that promise to speed up 
the iteration and development. 


The developers also note the fact that delta uploads have been 
disabled by default in Snapcraft 2.27, but you can enable them 
using the DELTA_UPLOADS_EXPERIMENTAL= 1 environment 
variable. Snapcraft 2.28 should be the first release to make 
delta uploads ready for production use, but until then, the 
feature is considered unstable. 


Among other improvements, we can mention that Snapcraft 
2.27 now lets developers build classic confined Snaps with 
either the “cleanbuild” command or the Launchpad builder, 
build on other LXD remotes using the “snapcraft cleanbuild — 
remote my-remote” command, and simplify set up of the 
environment via new “apps” entry. 


Source: http://news.softpedia.com/news/canonical-outs- 
snapcraft-2-27-snap-creator-tool-for-ubuntu-with-faster- 
iteration-513058.shtml 


Beeps, roots and leaves: Car-controlling Android apps 
create theft risk 


Insecure car-controlling Android apps create a heightened car 
theft risk, security researchers at Kaspersky Lab warn. 


Boffins at the security software maker made the warning after 
putting Android apps from seven (unnamed) car makers 
through their paces, uncovering a raft of basic security flaws in 
the process. 


During recent years, cars have started actively connecting to 
the internet. Connectivity includes not only their 
“infotainment” systems but also critical vehicle systems, such 
as door locks and ignition, which are now accessible online. 


Upon successful exploitation, a hacker could gain control over 
the car, unlock the doors, turn off the security alarm and, 
theoretically, steal the vehicle. In each case the attack vector 
would require some additional preparations, like luring owners 
of applications to install specially-crafted malicious apps that 
would then root the device and get access to the car 
application. 


Source: https://www. theregister.co.uk/2017/02/20/ 
android_auto_app_insecurity/ 


Debian-Based GParted Live 0.28.1-1 Released with 
Linux 4.9.6 and GParted 0.28.1 


As its name implies, GParted Live is a live ISO image that 
allows anyone to use the powerful and open-source GParted 
partition editor without installing anything on their computers. 
The new release, GParted Live 0.28.1-1, is, of course, based on 
GParted 0.28.1 and includes updated components based on the 
Debian Sid repository as of February 18, 2017. Also included is 
partial read and write support for LUKS encrypted filesystems. 


Under the hood, GParted Live 0.28.1-1 is powered by the Linux 
4.9.6-3 kernel and includes various patches for the libparted 
library to fix various FAT file system operations, such as 
checking of FAT32 crashes and detection of resized FAT32 
filesystems within the Microsoft Windows operating system. Of 
course, it also ships with the latest security patches to keep 
users safe at all times. 


Source: http://news.softpedia.com/news/debian-based-gparted- 
live-0-28-1-1-released-with-linux-4-9-6-and- 
gparted-0-28-1-513072.shtml 


Kaspersky: No whiff of Linux in our OS because we need 
new start to secure IoT 


Eugene Kaspersky, CEO of Kaspersky Lab, says its new 
KasperskyOS for securing industrial IoT devices does not 
contain “even the slightest smell of Linux”, differentiating it 
from many other IoT products that have the open-source OS at 
the core. 


Kaspersky today showed the “first commercially available 
mass-market hardware” based on its freshly minted 
KasperskyOS. The kit is a new layer-3 switch from Russian firm 
Kraftway. 


The company has said a completely new OS is needed to 


protect industrial control systems (ICS) and Internet of Thing 
(IoT) devices. Kaspersky points to the recent Mirai IoT botnet 
as evidence that it is the right time for KasperskyOS. 


The OS is supposed to cater to applications that need to run on 
small, optimized and secure platforms, including ICS switches, 
routers, IP cameras, and IoT controllers. 


It’s also designed to be extremely locked down, only allowing 
programs to execute documented operations within the context 
of a security policy that the customer defines. The security 
policy is aimed at offering choices to prevent a variety of IoT 
devices from being exploited to cause physical harm. 


Source: http://www.zdnet.com/article/kaspersky-no-whiff-of- 
linux-in-our-os-because-we-need-new-start-to-secure-iot/ 


OpenSSL Update Fixes High-Severity DoS Vulnerability 


The OpenSSL Software Foundation released an update to the 
OpenSSL crypto library that patches a vulnerability rated high 
severity that could allow a remote attacker to cause a denial-of- 
service condition. 


OpenSSL released the version 1.1.0e update that fixes flaws 
found in OpenSSL 1.1.0, according to the OpenSSL Security 
Advisory issued last week. The United States Computer 
Emergency Response Team also alerted system admins of the 
issue last week. 


ccording to OpenSSL, the vulnerability occurs during a 
renegotiation handshake procedure. “If the Encrypt-Then-Mac 
extension is negotiated where it was not in the original 
handshake (or vice-versa) then this can cause OpenSSL to crash 
(dependent on ciphersuite). Both clients and servers are 
affected,” according to the advisory. 


According OpenSSL, the issue does not impact OpenSSL version 
1.0.2. However, additional versions of OpenSSL, such as 
version 1.0.0 and 0.9.8, which are no longer supported, will 
also need updates. The bug, CVE-2017-3733, was reported by 


Red Hat’s Joe Orton on Jan. 31. The fix was developed by the 
OpenSSL team’s Matt Caswell. 


Source: https://threatpost.com/openssl-update-fixes-high-severity- 
dos-vulnerability/123818/ 


Black Lab Linux 8.1 Out Now with LibreOffice 5.3, It’s 
Based on Ubuntu 16.04 LTS 


Serving as a base release to the company’s enterprise offerings 
and equipped with all the long-term supported Linux 4.4 kernel 
from the Ubuntu 16.04 LTS (Xenial Xerus) operating system, 
Black Lab Linux 8.1 comes with up-to-date components and the 
latest security patches ported from Ubuntu’s repositories as of 
February 15, 2017. 


Among the updated components included in the Black Lab 
Linux 8.1 release, we can mention the popular NitroShare 
cross-platform tool for sharing files across different operating 
systems and the Synergy tool for sharing a single keyboard and 
mouse between multiple computers. 


Additionally, Black Lab Linux 8.1 comes with the latest 
LibreOffice 5.3 office suite, Chromium 56.0 web browser, 
Epiphany 3.18.10 web browser, Mozilla Thunderbird 45.7.0 
email and news client, and a collection of great and powerful 
desktop environments, including Unity, GNOME, Xfce, LXDE, 
and MATE. 


Black Lab Linux 8.1 is available for free for all users running 
the Black Lab Linux 8.0 operating system, but it’s not bug-free, 
as the developers inform us that users will need to type 
“custom” (without quotes) in the username field on the login 
screen and hit the Enter key twice to access the live session 
(only affects the MATE and Xfce editions). 


Source: http://news.softpedia.com/news/black-lab-linux-8-1 -out- 


now-with-libreoffice-5-3-it-s-based-on-ubuntu-16-04- 
Its-513119.shtml 


Descent OS Is Dead, Arkas OS Takes Its Place and It’s 


Based on Ubuntu 16.04 LTS 


Descent OS first appeared in February 2012 as a lightweight 
Ubuntu derivative built around the GNOME 2 desktop 
environment. Back then, it was known as Descent|OS, and was 
quite actively developed with new features and components 
borrowed from the latest Ubuntu releases. 


A year ago, the developer announced, after a two-year break, 
that he was getting ready for the next major release of the 
distribution, Descent OS 5.0, and prepared a first Alpha build 
for those who wanted to help him with the testing, but it didn’t 
seem like people were interested in this project anymore. 


As such, earlier this morning, Brian Manderville dropped the 
big news that he was ceasing development of Descent OS 
effective immediately on both Google + and Twitter accounts 
of the project. So no old or newer releases of Descent OS will 
be available for download anymore. 


But this is not the end of the road for Brian Manderville as a 
Linux OS developer, as he’s happy to present its upcoming 
GNU/Linux distribution called Arkas OS, based on the Ubuntu 
16.04 LTS (Xenial Xerus) operating system and built around a 
customized, modern KDE Plasma 5 desktop environment. 


Source: http://news.softpedia.com/news/descent-os-is-dead-arkas- 
os-takes-its-place-and-it-s-based-on-ubuntu-16-04-Its-513125.shtml 


Zorin OS 12 Business Edition Launches with macOS, 
Unity, and GNOME 2 Layouts 


Based on Ubuntu 16.04 LTS (Xenial Xerus) and powered by the 
long-term supported Linux 4.4 kernel, Zorin OS 12 Business 
Edition ships with the innovative Zorin Desktop 2.0 desktop 
environment that offers multiple layouts for all tastes. These 
means that you can make your Zorin OS 12 desktop look like 
macOS, GNOME 2, or Unity with a click. 


In addition to the new desktop layouts, Zorin OS 12 Business 
Edition includes the best business and media applications, such 


as HomeBank financial manager, Mixxx DJ software, Kodi 
Media Center, PlayOnLinux for installing Windows apps and 
games, and the entire LibreOffice office suite, which is fully 
compatible with Microsoft Office. 


As expected with any Linux-based operating systems that offer 
up-to-date components and the latest security patches, Zorin 
OS 12 Business Edition is safe from viruses and malware. The 
OS comes pre-loaded with a large number of applications that 
should help you be more productive. 


Zorin OS 12 Business Edition also promises to run well on older 
computers from ten years ago, and the developers assure us 
that the OS has been secured with a built-in firewall to keep 
government agencies and advertisers away from your private 
data and activity. The operating system also comes with 
support for more than 50 languages. 


Source: http://news.softpedia.com/news/zorin-os- 12-business- 
edition-launches-with-macos-unity-and-gnome-2- 
layouts-513166.shtml 


Valve launches SteamVR support for Linux 


Valve has been giving Steam users Linux love since 2012, and 
it’s not stopping with VR. The company just launched SteamVR 
for Linux, letting developers create Linux content for the HTC 
Vive VR headset, trackers and other hardware. The program is 
in beta, meaning developers must use an NVIDIA developer 
beta driver that’s built on “Vulkan,” the successor to OpenGL. 
Yow’re limited to “direct” mode, meaning you can only display 
images on the headset and not a desktop display at the same 
time. 


Developers can also use an AMD card, but it requires more 
futzing and is limited to secondary “desktop” display mode. 
Intel graphics aren’t yet supported, and Linux OpenVR game 
development requires the Unity version 5.6. There are a few 
other known issues: Base station power management and 
headset audio device switching aren’t yet implemented, and as 
mentioned, you can’t switch between direct (headset) and 


desktop display modes. 


Source: https://www.engadget.com/2017/02/22/valve-launches- 
steamvr-support-for-linux/ 


Eleven-year-old root flaw found and patched in the 
Linux kernel 


Linux system administrators should be on the watch for kernel 
updates because they fix a local privilege escalation flaw that 
could lead to a full system compromise. 


The vulnerability, tracked as CVE-2017-6074, is over 11 years 
old and was likely introduced in 2005 when the Linux kernel 
gained support for the Datagram Congestion Control Protocol 
(DCCP). It was discovered last week and was patched by the 
kernel developers on Friday. 


The flaw can be exploited locally by using heap spraying 
techniques to execute arbitrary code inside the kernel, the most 
privileged part of the OS. Andrey Konovalov, the Google 
researcher who found the vulnerability, plans to publish an 
exploit for it a few days. 


While they cannot be exploited remotely, local privilege 

escalation vulnerabilities like this one are still dangerous 
because they can be combined with other flaws that give 
remote hackers access to a lower privileged account on a 
system. 


In order for this flaw to be exploitable, the kernel needs to be 
built with the CONFIG_IP_DCCP option. Many distributions use 
kernels built with this option, but some don’t. 


Red Hat announced that Red Hat Enterprise Linux 5, 6, 7, and 
Red Hat Enterprise MRG 2 kernels are affected. The company 

has released patches for Red Hat Enterprise Linux 6 and 7 and 
for the Red Hat Enterprise Linux for Real Time for NFV (v. 7) 

(kernel-rt). 


Source: http://www.pcworld.com/article/3173612/security/ 


eleven-year-old-root-flaw-found-and-patched-in-the-linux- 
kernel. html 


Rebellin Linux 3.5 Released — Beginner-friendly, Fast, 
And Debian-based Linux Distro 


Jt last week, I published the latest list of the best beginner- 
friendly Linux distros. Here, I’m going to share the news of the 
release of another desktop Linux distribution that’s suitable for 
new users who are looking for a fast and smart-looking 
operating system. It’s also a lightweight distro that needs just 
512MB RAM to run. 


The latest release of Rebellin Linux, i.e., Rebellin Linux 3.5, has 
been rolled out by the developers. Built on a Debian base and 
the previous release, the developers have called it the best 
Debian Sid-based operating system. 


Rebellin Linux 3.5 features and changes: 

Linux kernel 4.8, GNOME 3.22.2 and MATE 1.16.1, Material 
design, WhatsApp client, AMD APU improvement, VLC 
replaced by Totem 


Source: https://fossbytes.com/rebellin-linux-3-5-features- 
download/ 


Android Ransomware Asks Victims to Speak Unlock 
Code 


A new variant of the Lockdroid Android ransomware has 
chosen a unique way of unlocking devices by asking users to 
speak a code provided after paying the ransom. 


This ransomware, one of the oldest families on the Android 
market, has seen a lot of changes lately, with crooks 
experimenting with various methods through which victims 
can get in contact with the ransomers. 


Past versions had used the classic route of displaying an email 
address in the ransom note, but at the beginning of the month, 
Lockdroid was started showing a 2D barcode on the device’s 


screen, that victims needed to scan to get receive an URL where 
they could pay the ransom. 


Based on a new report from Symantec, it appears that crooks 
were only experimenting with the 2D barcode system, as they 
have now dropped it in favor of a new contact method. 


This time around, Lockdroid operators are listing a QQ instant 
messaging username at the bottom of their ransom screen. 


Users are told to message this ID and get in contact with the 
ransomer. What follows is a negotiation between the two, and 
after making a payment, the victim receives a four-string 
unlock code. 


Source: https://www.bleepingcomputer.com/news/security/ 
android-ransomware-asks-victims-to-speak-unlock-code/ 


Ubuntu Core Linux comes to i.MX6-powered IoT- 
friendly TS-4900 Computer On Module 


One of the best things about the Linux kernel (and associated 
operating systems) is the ability to work on various hardware 
types, including ARM. Microsoft’s operating systems, by 
comparison, are far more narrow. True, there is the lightweight 
Windows 10 IoT for ARM boards, but it is hardly a factor 
nowadays. 


Today, Ubuntu Core comes to the i.MX6-based and ARM- 
powered TS-4900 Computer on Module. While Android and 
other Linux options were already available for the IoT-friendly 
CoM, Ubuntu Core is still a major win. Canonical’s 
revolutionary snap packages should work beautifully here. 


Mike Bell, EVP IoT and Devices of Canonical says, “The 
TS-4900 Compute Module brings Ubuntu Core to the popular 
i.MX6 platform, delivering a new level of life-cycle 
management, monetisation and security to a whole range of 
IoT applications. Ubuntu Core delivers groundbreaking 
security, management, operations, and upgradability in a 
compact developer-friendly platform, underpinned by the open 


‘snap’ packaging technology.” 


Source: https://betanews.com/2017/02/23/ubuntu-core- 
linuxmx6-ts-4900-iot-com/ 


Runtu 16.04.2 Xfce Edition Distro Is Based on Ubuntu 
16.04.2 LTS and Xfce 4.12 


The developers of the Ubuntu-based Runtu operating system 
have announced the release of a 64-bit version of the 
distribution with the lightweight and customizable Xfce 
desktop environment. 


Being based on the recently released Ubuntu 16.04.2 LTS 
(Xenial Xerus) operating system, Runtu 16.04.2 Xfce Edition 
inherits all of its goodies, including the Linux 4.8 kernel that 
was ported from the more recent Ubuntu 16.10 (Yakkety Yak) 
release, as well as a newer graphics stack powered by X.Org 
Server 1.18.4, and the latest software versions. 


The default desktop environment used for Runtu 16.04.2 Xfce 
Edition is, as expected, Xfce 4.12, which offers users a 
traditional layout with a single panel located at the bottom of 
the screen instead of on top like many other Xfce-based GNU/ 
Linux distribution offers to their users. 


Runtu 16.04.2 Xfce Edition ships with the LightDM login 
manager, the XFWM window manager, and uses the Thunar 
1.6.10 as default file manager. Moreover, NetworkManager is 
used for all of your network connections, and it looks like 
PulseAudio is pre-installed and enabled as default sound 
system. 


Xfce’s xfce4-power-manager is also included to make sure that 
your laptop’s battery life is prolonged for as long as possible, 
and various popular application are pre-installed in the Runtu 
16.04.2 Xfce Edition Live ISO image, among which we can 
mention the LibreOffice office suite and Mozilla Firefox web 
browser. 


Transmission BitTorrent client, uGet download manager, and 


Sylpheed email client are also installed by default in Runtu 
16.04.2 Xfce Edition, which promises to provide users with out- 
of-the-box printing support, as well as the most powerful tools 
needed for playing audio and video files. 


Source: http://news.softpedia.com/news/runtu- 1 6-04-2-xfce- 
edition-distro-is-based-on-ubuntu- 16-04-2-lts-and- 
xfce-4-12-513253.shtml 


RaspEX Linux Brings Ubuntu 16.10 with LXDE Desktop 
to Raspberry Pi 3 and 2 SBCs 


GNU/Linux developer Arne Exton is back with a new release, 
and this time he managed to publish a new build of his RaspEX 
Linux project for Raspberry Pi 2 and Raspberry Pi 3 single- 
board computers. 


RaspEX Build 170221 is is based on the software repositories of 
the Ubuntu 16.10 (Yakkety Yak) and Debian GNU/Linux 8.7 
“Jessie” operating systems, as well as Linaro open source 
software for ARM SoCs. It uses the lightweight and fast LXDE 
desktop environment by default, along with the long-term 
supported Linux 4.4 kernel. 


The Linux kernel version included in RaspEX Build 170221 is 
kernel 4.4.49-exton-v7 +, which Arne Exton injected with 
various extra patches for better hardware support. The new 
release also adds the Wicd network manager and replaces 
Chromium with the Mozilla Firefox web browser because it 
offers uses better YouTube support. 


Just like in the previous versions of the project, the new 
RaspEX build is shipping with Samba and VNC4Server pre- 
installed, which will allow you to connect to your Windows 
computer in your home network, as well as to control your 
Raspberry Pi device from a Windows PC if either the PuTTY or 
VNC Viewer apps are installed. 

Moreover, the developer managed to add a bunch of other 
popular tool that have been requested by users lately, such as 
SMTube to browse YouTube videos, the Midori web browser, 
PulseAudio sound server, and various network tools. You 


should study the full list of installed packages to see what’s 
included in RaspEX Build 170221. 


Source: http://news.softpedia.com/news/raspex-linux-brings- 


ubuntu-16-10-with-lxde-desktop-to-raspberry-pi-3-and-2- 
sbcs-513264. shtml 


Command & Conquer: Backups 


Written by Lucas Westermann 


As anyone who has used a computer for any period of time will 
know - sometimes, things disappear. This can be from a power 
outage, careless deleting, or hardware failure. As such, backups 
are always necessary. There are a number of ways to go about 
this, so today I will outline my personal approach, and the 
thoughts behind it. 


Distinctions 


I segment my backups into three tiers - automatic, manual, and 
defaults. Automatic backups are pretty simple - I run Borg once 
a day at 5pm to create a snapshot of my system. You can 
compare it to Time Machine on OS X. The Borg backups are 
saved on my NAS (2 disks, in a RAID). The script for that can 
be found here: hitp://pastebin.com/nMbuRubx 


Manual backups are ones I do by hand - typically for large files 
(such as Linux ISOs), and that I save on an external hard drive. 
I’m not typically too worried about redundancy for these files, 
as I can easily download them again. For some files that I want 
a bit of safety for, I copy it to multiple drives. They’re irregular, 
and, as such, not worth automating. 


Lastly, the backups I call defaults. These are mostly dotfiles 
(configuration files) that I will re-use if I ever set up a new 
computer, or have to reset my computer for some reason. I save 
these in a git repository, saved to a private gitlab repository. 
The actual copying and committing happens through a shell 
script, which can be found here: http:// 
pastebin.com/1HUAVGHh 


Explanations 


Borg 


The script for Borg is pretty simple - I set up a few variables 
which will need to be updated. The script also has one optional 
switch “-p”, which shows the progress of the backup when run 
manually. The borg command itself is pretty self-explanatory 
(though less legible thanks to the variables). It essentially skips 
a few folders that I don’t want backed up, and backs up my 
home folder to the NAS, while compressing it. After the backup 
is complete, old backups are pruned down - daily backups for a 
week, 4 weekly backups, and 6 monthly backups. This helps to 
keep the space requirements down. 


I focus mainly on the home folder, as those are the files I want 
safe. I hardly make any changes to the root filesystem, and the 
important configuration files I want to keep are covered in my 
defaults backup. 


I’ve never had to restore anything from Borg, but using borg 
extract should allow you to extract all (or some) files from the 
backup. The Borg documentation is fairly thorough. 


Manuals 


I just use Thunar or a Terminal to copy files around. The 
thought process on why I do this by hand is outlined above. 
This also includes a text file in Dropbox listing some fixes I’ve 
implemented for some bugs my particular setup has dealt with. 


Defaults 


These are files like my configuration for i3, my git settings, and 
some system-wide files that I’ve changed. The script listed 
above contains an array of files and directories. The if 
statements then check if the file is in /etc/ or in my home 
folder. It then creates a version of the file path without the 
leading slash or the home path. This is then saved in my 
repository folder. If the file ends in a slash - i.e. is a directory - 
then creates the directory if it doesn’t exist in the repository, 
and copies the contents over. Otherwise it just copies the file. 
In the else statement, the -r switch is not really necessary for 
rsync, but I left it there just in case something slips through the 


if statement. 


I also used rsync instead of cp, in order to be able to avoid .git 
folders (as they cause permission errors), and because rsync 
will copy a file only if there are changes. 


The script also creates a list of packages installed. Since I run 
Arch Linux, the script uses pacman. For Ubuntu, replacing line 
15 with pkglist=”apt list -installed > pkglist.txt” should work. 
You can then reinstall the packages with 


The very last command simply commits and pushes the 
changes to the git repository. 


The reason for doing it this way is so I can easily recreate my 
setup - whether it’s on a new computer, or if I need to recover 
after extensive hardware failure. Since the files are pretty 
small, I pop them into a git repository to keep many versions of 
it, and then save it to gitlab, so I have access to it, even on 
other computers. I tend to run the command by hand after 
editing any of the files it contains. However, you can easily use 
cron to run it. 


Conclusion 


I’ve been using these solutions for a few years, and while I 
haven’t had any cases of having to restore from Borg, I have 
had a few external drives fail. And I’ve also set up a few new 
devices in that time. While there can be some hiccups, it’s been 
a pretty smooth process overall. 


I hope this article is helpful to anyone who may be uncertain as 
to backup approaches. If you already have a setup, feel free to 
share it with me at lswest34 + fcm@gmail.com. I also welcome 
any questions, or article suggestions. 


Lucas has learned all he knows from repeatedly 
breaking his system, then having no other option 
but to discover how to fix it. You can email Lucas 
at: lswest34@gmail.com. 


HowTo - Python in the REAL 
World - Part 75 


Written by Greg D. Walters 
Motors And Arduino... 


Before we get too far along, there is a new version of the 
Arduino IDE (1.8.0) available at https://www.arduino.cc/en/ 
Main/Software#/?, so it would be a good idea if you download 
and install it before continuing. If you aren’t using your RPi for 
your Arduino programming, go ahead and dust it off and install 
the new Arduino IDE on it so you'll be ready for next month. 


This month, we'll be controlling the Servo motor we used a few 
months ago on the RPi. 


The Hardware 


Our hardware requirements this time are very simple and you 
should already have everything needed: 


M5 VDC Servo Motor 

HM Arduino Uno (or clone) 
HM Breadboard 

Hi Jumpers 

HM 10K Potentiometer 


Wiring 
Once again, for our first two projects, we'll use the same 


wiring/breadboard setup — even though the potentiometer is 
not used in the sweep program. 
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And for those who are interested, here’s the schematic... 


Sweep 


This sample code, and the next sample, are from the Arduino 
IDE Examples, so you really won’t need to copy the code. Just 
open the IDE, Select File | Examples | Servo. and the Sweep 
code. The code is already well documented, so we won’t need 


to discuss much about it. 


Plug in your Arduino, upload the code to it, and you’ll see that 
the servo starts sweeping back and forth. 


Knob 


Just as in the sweep program, the example code is found in the 
Arduino IDE under File | Examples | Servo | Knob. And again, 
the code is very well documented already, so no major 
discussion will be needed. 


Again, pull up the code in the IDE, upload it to your Arduino, 
and when you turn the potentiometer, you should see the servo 
swing in response to the position of the potentiometer. 


As I said earlier, next month we will be working with the 
Raspberry Pi to control the Arduino, so break it back out, and 
get ready. 


Greg Walters is owner of RainyDay Solutions, LLC, 
a consulting company in Aurora, Colorado, and 
has been programming since 1 972. He enjoys 
cooking, hiking, music, and spending time with his 


A slim and trim Linux system 
for you! 


Written by S. Parthasarathy drpartha@gmail.com 


You just created a shiny new Linux system with all the bells 
and whistles? Happy to see your new babe giggle and dance, as 
you play with her? You want it to be the same way all the 
time? It is important to do some house-keeping once in a while. 


Over time, a computer system tends to get cluttered for many 
reasons. For example, software packages that are no longer 
needed can be uninstalled. When the system is upgraded from 
release to release, it may miss out on configuration tweaks that 
freshly installed systems get. Updating your system through the 
default updating tool will gradually cause the accumulation of 
packages and the filling of the cache. This can have a larger 
impact when you're uninstalling software packages, and their 
dependencies are left behind for no reason. 


Over the time, you could have a dozen copies of the same file 
lying in different corners of your system. The best place is to 
hunt them down and eliminate them before they take control of 
the hard disk. 


Occasional mishaps, like unexpected disk crashes, or 
unintentional power failures, may leave your disk with a lot of 
inaccessible fragments. 


A badly configured application may quietly chew up your disk, 
till there is no more free space left. Or, a runaway process or 
shell script may keep filling up your disk over and over again. 
The result could be a dramatic lockout for you. 


Linux offers an amazing collection of options for you to remove 
the cobwebs from your system. 


A quick health check for your disks 


The following health checks will reveal a lot about potential 
health problems: 


You can take the following preventive measures to avoid 
disasters. Remember, “a stitch in time saves nine”. 


Call the professionals 


H Computer Janitor is an application to fix these kinds of 
problems. It attempts to find software packages that can be 
removed, and tweaks the system configuration in useful 
ways. 

@ Do not use this program if you want to clean your system. All 
it does is remove packages it “thinks” are not necessary. For 
example, the interface of the Janitor doesn’t explain to a user 
what it intends to do. 

@ Ubuntu Tweak is capable of a lot more than just system 
cleaning, but it is one aspect of the application that remains 
unsurpassed in terms of ease-of-use and features. Best of all, 
it doesn’t trash your system! 

@ “BleachBit quickly frees disk space, removes hidden junk, 
and easily guards your privacy. Erase cache, delete cookies, 
clear Internet history, remove unused localizations, shred 
logs, and delete temporary files.” 


Trusty ol’ terminal commands 


Read all the corresponding man pages before you use these 
tools. 


ncdu 


ncdu is a disk usage analyzer with an ncurses interface. It is 
designed to find space hogs on a remote server where you don’t 
have an entire graphical setup available, but it is a useful tool 
even on regular desktop systems. Ncdu aims to be fast, simple, 
and easy to use, and should be able to run in any minimal 
POSIX-like environment with ncurses installed. The application 


can be run from any directory, including the root directory. 
The output will tell you the disk usage of each file and 
directory, with the ability to drill down into any listed 
directory. 


If you’re not familiar with it, ncdu is an ncurses interface for 
du, the tool used for estimating file space usage on Linux 
distributions. du is installed out-of-the-box, but ncdu is not, so 
if you wish to use it, first install it using the following 
commands: 


You can uninstall ncdu and its dependent packages. To remove 
the ncdu package and any other dependant package which are 
no longer needed: 


If you are not that fussed about cleaning cruft with an 
application, you can still free up some space by running the 
following commands once in a while: 


Ubuntu doesn’t get polluted much over time with one notable 
exception, namely old kernels. It even doesn’t need 
defragmentation. 


Get rid of cobwebs - Remove junk files. 


A common source is the automatic backup or autosave files 
often created by various editors. These files usually have a 
name ending with the tilde character e.g.somefile.txt A simple 
script can help you locate files which are of no use to you: 


Clear the browser caches 


Use the tools provided by your browser. 
Clear the thumbnails 


For each shown picture, Ubuntu automatically creates a 
thumbnail, for viewing in the file manager. It stores those 
thumbnails in a hidden directory in your user account (names 
of hidden directories and hidden files start with a dot, like 
.cache or .bash_history. The dot makes them hidden). 


Over time, the number of thumbnails can increase 
dramatically. Moreover, the thumbnail cache will eventually 
contain many superfluous thumbnails of pictures that don’t 
exist anymore. 


Clear the thumbnails every six months or so. The quickest way 
is to use the terminal commands as follows: 


Get rid of polluted settings in your web browser 


Firefox and Chromium/Chrome add-ons and extensions: don’t 
trust them blindly. And keep their number down anyway: don’t 
turn Firefox and Chromium/Chrome into a Christmas tree. The 
more extensions you install, the bulkier your browser becomes. 
Polluted settings in Firefox, Chrome or Chromium are 
sometimes caused by rotten, shady or rogue add-ons and 
extensions. Furthermore, some add-ons may cause malfunctions 
in other add-ons, or even in the browser itself. 


Broken symlinks 


Symbolic links are often used to “store” multiple copies of the 


same file in different places but still reference to one file. What 
happens if I delete the original file but not the link? The link 
will remain but will point to a file that does not exist. This is 
called an orphaned or dangling link. Symbolic links are like 
shortcuts or references to the actual file or directory. One easy 
way to locate (and then remove) such broken links is : 


fsck 


fsck “fsck” stands for “File System Consistency checK”. fsck is 
used to check and optionally repair one or more Linux 
filesystems. Filesys can be a device name (e.g. /dev/hdcl, / 
dev/sdb2), a mount point (e.g. /, /usr, /home), or an ext2 label 
or UUID specifier (e.g. UUID = 8868abf6-88c5-4a83-98b8- 
bfc24057f7bd or LABEL= root). 


You shouldn’t need fsck for modern filesystems anyway since 
they have journaling functions and should be able to recover 
from crashes. 


You will need root/superuser permission to run the “fsck” 
command. 


During the filesystem check, if errors are detected, you can get 
“fsck” to auto repair the filesystem with the -y flag. For 
example: 


If you have installed and uninstalled a lot of applications, 
chances are your system is infected with a lot of dependencies 


files that you have absolutely no use for. Here are some useful 
commands to get rid of any partial package and remove any 
unused dependencies: 


This will flush the local cache from the retrieved package files. 


This will clear out only the absolutely not necessary packages 
that cannot be found in the repositories anymore, or a newer 
version of them is located. 


This command will remove packages that were installed as 
dependencies for another package that has been removed, and 
so are no longer needed. 


fslint 


fslint is a utility to find and clean various forms of lint on a 
filesystem, especially duplicate files and broken symlinks. 


To install fslint: 


In Conclusion 


Just like regular exercise helps you reduce your belly fat and 
keeps you fit, frequent housekeeping will ensure that your 
Linux system works effortlessly and flawlessly. This article has 
given an overview of the options which Linux offers you for 
housekeeping. 


Programming For Ubuntu 
Touch Pt. 1 


Written by Miguel Menéndez Carrion 
Introduction 


This course is a new project to learn how to program 
applications that work on Ubuntu Touch. In the process, I will 
generate documentation with all the phases of development of 
an application: requirements acquisition, implementation, and 
distribution in the Ubuntu store. One of the problems found in 
Ubuntu Touch is the lack of applications, both in number and 
in functionality. I do not expect to change this situation in the 
short term, but one way to change it is by programming 
applications and helping other users do the same. Only in this 
way will it be possible to change this situation. 


This course is not a masterclass in which I explain something 
and others repeat them automatically. The idea is to publish 
chapters and complete the course documentation with the 
feedback of the other users. If a particular block gets more 
interest, it can be extended later. There is no problem in asking 
questions in the resources associated with the course. 


The documentation will be structured as a book. Its access is 
free and any user can read it in a browser or as a PDF, ePub or 
Mobi file. It is possible to add comments to the book, although 
it is necessary to have an account created in Gitbook. The 
source code for the examples and applications will be hosted on 
Launchpad using Bazaar as version control. On the same page 
there is a mailing list in which you can ask questions. 
Additional to the resources mentioned earlier, there is also a 
Trello board with the course status. 


Finally I want to thank the users who have encouraged me to 
start this madness, among them are kain_X_X and LarreaMikel. 
A course of this type can not be done by a single user. Evolving 


and achieving larger goals is possible only when many people 
contribute. 


Previous Knowledge 


Due to the subject of the course itself, some programming skills 
are required. In this course we will mainly use QML for the 
user interface and JavaScript or C/C+ + for the logic. It helps 
to know either of the two languages, although it will not be 
critical. Each chapter will explain the basic elements and a 
bibliography will be included for the user to consult if in doubt. 


The Ubuntu Touch Software Development Kit (SDK) is being 
released for the Ubuntu distribution. It will therefore be 
necessary to use Ubuntu or any of the distributions that take it 
as a base. Not meeting this requirement is not a serious 
problem either, because you can do the same in a virtual 
machine or using a Live USB. 


To make it easier to follow the course, I will include only the 
most important parts of the source code. The rest of the files 
will be in a source repository in Launchpad. It would be helpful 
knowing the basic commands of Bazaar. 


Objectives of the Course 


The main objective of the course is to learn how to program 
applications for Ubuntu Touch while having fun. Programming 
is a time-consuming task, and you have to like what you are 
doing. Applications can be simple or complex, the important 
thing is that they solve a need that we have. For example, an 
application that has a list of plants in the garden and lets us 
know when we have to water them. 


A good design in the logic of the application can greatly reduce 
development time. In the same way, a bad design can cause us 
to throw the code to the recycle bin and start over, because it is 
easier to start with a different approach. 


Types of Applications 


Ubuntu Touch has three types of applications. We can find Web 
Applications (WebApps), Scopes, and Native Applications. 

A web application is basically a web browser tab that runs 
independently. It has its own icon in Unity (the application 
launcher) and can contain remote information of any type. For 
security reasons, a Web application does not have access to the 
local content of the terminal. 


®nH a 


The scope is the second type of application found in Ubuntu 
Touch. To some extent it behaves like a screen that shows 
information to the user. The information can be external, for 
example the weather forecast, or internal in the form of 
information aggregator. An example of this case would be the 
“Today” scope. This scope shows information from different 
applications. 


Finally we have native applications. In this case the 
applications can access all the resources of the phone, and are, 
eventually, more complex than the Web applications and the 
scopes. Applications are confined in Ubuntu Touch and can 
only access their own information. If we want to access 
information from other applications, we need to pass it through 
the content-hub. As an example of a native application, we 
have the calendar. 
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Evolution of the Course 


One detail that I want to point out (and that you will get tired 
of reading throughout the course) is that this course is not a 
masterclass. It is important that you participate with either 


questions, suggestions or errors. The order of the chapters can 
vary and chapters that were already closed can be opened to 
add new content. This course is alive and can be improved only 
if we all get involved. It doesn’t matter if questions are very 
basic or what the other users would say. The main reason for 
following this course is learning. Remember: The only stupid 
question is the one that you don’t ask. 


Access to the mailing list is open, and only a Launchpad 
account is needed. There is no censorship except several cases 
of common sense: 


M The questions must be related to the course. 
HM Spam of any kind is not allowed. 
@ Attacking other users is not allowed. 


If any of these rules is broken, I will warn the person first. If 
the user continues with his attitude, he will be asked to leave 
the mailing list. I hope I never have to get to that end. 


This course is not set as a whole and therefore I will write it 
week after week. For this reason, it is possible that some error 
appears. If this is the case, do not hesitate to warn me in order 
to correct it. This course is an opportunity to create content 
and give a boost to Ubuntu Touch. 


Resources 


Mailing List: https://launchpad. net/~ubuntu-touch-programming- 
course 


People who have collaborated 


@ Larrea Mikel: revision of the chapter in Spanish. 
M@ Cesar Herrera: revision of the English translation 
MH Joan CiberSheep: revision of the English translation. 
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How to - Drawing with 
Inkscape - Part 58 


Written by Mark Crutch 


I’m going to take a slight departure from the usual format for 
the first part of this month’s article — and talk about politics. 
Not Trump, Brexit or the rise of populism, but rather the 
politics of open formats and browsers. 


First, a very brief (and simplified) history lesson: SVG, the file 
format used by Inkscape, was created under the auspices of the 
World Wide Web Consortium (W3C) — the organisation that 
was also charged with creating the specifications for HTML and 
CSS. HTML was already an established language, but loosely 
defined, and with a host of differences between the various 
browser implementations. The W3C tidied things up, but 
ultimately decided that the best way to get everyone writing 
good, cross-browser HTML was to effectively abandon the 
undisciplined language it had become, and move to a 
rigorously defined and structured alternative, XHTML. This was 


also part of a larger plan to promote XML, which can be 
thought of as a language for defining languages. XHTML was 
HTML re-cast as an XML language, bringing with it more scope 
for interoperability with other XML languages, including SVG. 


As academically pure as the aims of XHTML were, they fell 
down in the real world. HTML had thrived partly because it 
was so lax. Browsers would do their best to interpret even the 
most malformed syntax, which greatly lowered the barrier to 
entry for non-programmers to create their own web pages. 
Lowering it further still were applications such as 
Dreamweaver and HoTMetaL, which would allow users to 
create web pages as easily as they would a Word document. 
HTML continued to proliferate online, and it would have been 
commercial suicide for any browser to render only XHTML. For 
all its purity and technical superiority, XHTML inevitably lost 
out to the looser standard, and the W3C’s work became largely 
irrelevant. It was clear that the approach of having a standards 
body to write the specs, and only then for the browsers to 
implement them, was not one that would work in practice. 


What followed was a period of stagnation for the web. No 
browser wanted to introduce any radically new syntax into 
HTML or CSS for fear of re-kindling the bad old days of 
proprietary extensions. But eventually, the browser companies 
began to talk amongst themselves about ways to push the web 
forward again. The result was the formation of another 
standards body, WHATWG, whose remit was to improve the 
old HTML specs largely by documenting what the browsers 
already did, making it easier for all the vendors to bring their 
programs up to the same level of compliance. They also added 
a few new features to HTML, branding it as “HTML5”, although 
we're now several years on and many of their more useful ideas 
still haven’t been universally implemented (how are those date 
and time pickers coming along, Mozilla?). 


Eventually the W3C gave up on their philosophical march 
towards XHTML purity, and embraced the work of WHATWG, 
such that the HTML standard is now nominally back in their 
hands. But structurally, things have changed: no longer can the 


W3C write specs and expect browsers to implement them; now 
the browser vendors agree what to implement amongst 
themselves, and then the specification is written to match the 
implementations. Okay, in practice it’s more nuanced than that, 
but the key point is that, these days, specs are largely driven by 
what browsers are prepared to implement. 


This has an impact on Inkscape because, as an SVG editor, its 
feature set follows the capabilities written into the SVG 
specification. But the SVG spec, in practice, can’t gain any new 
capabilities without support from the browser vendors. Yet 
those vendors are loath to implement many of the new 
features, given that there are barely any files online that use 
them. Users, meanwhile, are equally loath to create content 
using these new features because no browser supports them. 
The authoring tools (such as Inkscape) would like to implement 
them, but, without browser support, the spec is unlikely to be 
finalised and supported — so any work they do could be 
rendered obsolete if the specification changes. 


And so we go round in circles: no files using the new features 
online means no browser support; no browser support means 
the specs don’t stabilise; unstable specs make authoring tools 
less likely to support the features; no support in authoring tools 
makes users less likely to create and post files that use the new 
features; no files using the new features online means no 
browser support... and so on. 


To be fair, some limited support for new SVG features has 
made it into browsers — but mostly in areas where the SVG 
Working Group has relinquished ownership in order to move 
the feature to CSS. This is both good and bad news: CSS is one 
of the cornerstones of the web, so adding features there, rather 
than in SVG, makes them more likely to be adopted by 
browsers; conversely it further weakens the position of SVG as 
a stand-alone format, and requires non-browser applications to 
comply with standards that often don’t sit easily outside the 
web environment, diminishing SVG’s position as an 
independent file format. 


With more features moving to CSS, and the vendors showing 


little interest in implementing those that remain part of SVG, 
there’s even been talk of not renewing the SVG Working 
Group’s charter beyond a short period to stabilise the work that 
has been done on the SVG 2 specification over the past couple 
of years. That would mean no SVG 3, and no new features in 
the future. Given how many great ideas were dropped from 
SVG 2 with the promise that they could be revisited for later 
specs, this would be a tragedy. Sure, Inkscape would likely 
continue, probably adding proprietary extensions to SVG to 
support new features as time goes on. But the promise of an 
open vector format that could be used cross-application, and 
rendered natively on the web, would have died. 


Is there anything that we, as users and advocates of open 
formats, can do to help ensure that SVG has a future? Since it’s 
largely in the hands of the browser vendors, the best we can to 
is to show them that there is a demand for the format, and for 
the new additions that are being made to it. We need to create 
more SVG documents, especially those with features from the 
SVG 2 specification, and post them online. And we need to 
encourage others to do the same. But this approach isn’t 
without its problems. 


The SVG 2 spec isn’t yet finalised. Creating documents using 
the current version could render them obsolete if there are 
further changes to the specification before it’s finally ratified. 
So any files you create now might require some (hopefully 
minor) fixes if they are still to work in a year’s time. A bigger 
problem for most people is how to create them in the first 
place. Hand-coding SVG is certainly possible, but it’s probably 
not a practical option for most people, which means that the 
only way to get new features into your files is to wait for them 
to become available in authoring tools. Thankfully, Inkscape is, 
to some extent, leading the way for this approach. The recent 
0.92 release adds support for rendering several SVG 2 features, 
although, unfortunately, UI support for creating them in the 
first place is somewhat more limited. Nevertheless, there are a 
couple of SVG 2 features that you can start using in your 
Inkscape drawings today, the first of which I’ll cover in this 
article, and the second next time. 


The first step towards using these new features is, of course, to 
install version 0.92.x of Inkscape. Windows users can just 
download an installer from https://inkscape.org/en/download/ 
windows/ whereas MacOS users are left behind somewhat, with 
no official .dmg files available at the time of writing (see 
https://inkscape.org/en/download/mac-os/ for more details and 
alternative options). 


Linux installation instructions vary between distributions, but 
there’s now a distribution-independent Snap package available. 
Systems that aren’t based on Ubuntu may have to install the 
“snapd” daemon separately (see https://snapcraft.io/docs/core/ 
install for details), but if you’re already on Ubuntu 16.04 or 
later, you should simply be able to run the following command: 


Unfortunately the snap doesn’t necessarily have all the 
prerequisites to get Inkscape up and running correctly. One 
change in 0.92, for example, is that Inkscape no longer bundles 
a built-in copy of the Potrace library (for tracing bitmaps or 
using the bucket fill tool); I had to “sudo apt-get install 
libpotraceO” to get it working on my system. There have also 
been theming issues with early snaps (which I also fixed by apt- 
get installing some additional libraries), although by the time 
you read this, there should have been a point release which 
fixes those issues. I strongly recommend launching Inkscape 
from the command-line at first (just enter “/snap/bin/ 
inkscape”) as error messages in the console may make it clear if 
there are any unmet dependencies, whereas launching from an 
icon might leave you with no Inkscape window, and no 
indication as to what went wrong. 


If you already have Inkscape installed via the normal Apt tools, 
you will find that the old version is still installed, even after 
you’ve added the snap — and that it probably gets run in 
preference to the new release when you just execute “inkscape” 
from the command-line, or click the launcher in your menu. 
You'll need to modify your path to give the /snap/bin directory 
priority over /user/bin or update your launchers and links to 


point to the snap version instead. 


There are still traditionally packaged versions available for 
several distributions as well, which is especially useful if you 
have an older system that doesn’t support snaps. See https:// 
inkscape.org/en/download/linux/ for details. For example, on 
Ubuntu 14.04, you might prefer to use the stable PPA that is 
available, by issuing these commands: 


Whichever approach you take, it’s worth visiting Help > About 
Inkscape to ensure that you are running version 0.92. 


Inkscape 0.92.0 unknown 


https://www.inkscape.org 
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The first SVG 2 feature exposed in the UI is “paint-order”. This 
is actually a rather uncontroversial feature for the browser 


vendors, as it has already been implemented in at least Firefox, 
Chrome, Opera and Safari. It solves a very common problem in 
SVG, especially when dealing with text: any stroke applied to 
an object is painted on top of the fill, and extends half in and 
half out of the object. Consider this simple bit of text, rendered 
in a cursive font: 


Tdac 


Suppose we want to add an outline to it, to make it stand out a 
little bit more against its background. That’s simple enough, 
right? Just give it a thin stroke. Unfortunately that’s where the 
problems start. 


aap 


It certainly stands out more (the fact that the fill appears 
darker is an optical illusion that helps enhance the effect 
further), but, due to the construction of the font, we’ve now got 
bits of the outline appearing “inside” letters, where the tail of 
one flows into the body of the next. We can adjust the kerning 
to separate the problem characters, but that pretty much 
defeats the point of using a cursive font in the first place. 
Converting the letters to paths, then creating a boolean union, 


fixes the visual problem, but now our text isn’t actually text 
any more, which in many cases makes this approach a non- 
starter. Let’s suppose we resign ourselves to having to separate 
the letters. A little manual kerning gives us this: 


Tnescape 


What if we want it to stand out a bit more? Let’s double the 
thickness of the stroke and see what effect it has. 


Thhexcape 


Urk! That’s not good. All the thin parts of the script have 
become completely filled by the stroke, ruining the light 
elegance that we wanted from the font in the first place. The 
problem, of course, is that increasing the thickness of the stroke 
not only adds more pixels to the outside of it, but also to the 
inside, obscuring more of the fill. One common solution to this 
— and to the previous problem — is to copy the text, putting an 
unstroked version directly on top of a stroked copy. 


This works, but now you’ve got two text objects to keep in 
sync. With a little effort you can do the trick with clones 
instead, using an unset fill and stroke, but, if you want 
anything other than a black fill, you'll be trying to keep three 
objects (a text object and two clones) under control. 


The problem would completely go away if only you could tell 
Inkscape to render the fill on top of the stroke, instead of the 
other way round. And that’s precisely what the SVG 2 “paint- 
order” property does! Except it goes a step further, and also 
includes any markers that are on the path. Considering all the 
possible orderings for the three things to be rendered, this gives 
six possible combinations: 


@ Fill, Stroke, Markers 
@ Fill, Markers, Stroke 
@ Stroke, Fill, Markers 
@ Stroke, Markers, Fill 
H Markers, Fill, Stroke 
H@ Markers, Stroke, Fill 


The first of these is the default, and is the way that SVG 1.x 
operated. But now there’s an extra section in the Stroke Style 
tab of Inkscape’s Fill and Stroke dialog that presents six buttons 
to let you choose your preference for any selected paths. 


"Fill and Stroke (Shift+Ctrl+F) 
|[AFill and Stroke (Shift+Ctri+F) 


"Fill [7 Stroke paint \= Stroke style 
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Markers: 
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In each icon, the circle represents a marker, the dark blue 
rectangle is the fill, and the light blue path represents the 
stroke, with a dashed white line to indicate its centre. You can 
produce a similar collection of shapes by drawing a square with 
a thick border, converting it to a path, then setting a start 
marker. Clicking each of the buttons whilst your bigger version 
is selected will immediately reflect the change, and make it 
much clearer to see what the result of each option is. I 
recommend creating a shape like this and switching between 
the different modes to help you to fully understand the effect. 


As for our text, because there are no markers involved, any of 
the three modes that draw the stroke before the fill will give 
our desired result, with only a single text object and no need 
for clones, copies, or other workarounds. It even works well 
with a really thick outline. 


Even though paint-order is already well supported in browsers, 
I urge you to create new designs and works of art that use it, 
and put them online. The more files we share that use SVG 2 


features, the more likely it is that the browser vendors might 
realise there’s a demand for them, so going after “low hanging 
fruit” such as this is an easy way to express your interest 
without having to worry about posting files that don’t render in 
the browser. 


Next time I’ll move onto Mesh Gradients — perhaps one of the 
most useful, and most desperately needed, new features in SVG 
2, but one which is in very real danger due to browser vendor 
antipathy. 


Mark uses Inkscape to create three webcomics, ‘The Greys’, 
‘Monsters, Inked’ and ‘Elvie’, which can all be found at http:// 
www.peppertop.com/ 


Mark uses Inkscape to create three webcomics, 
‘The Greys’, ‘Monsters, Inked’ and ‘Elvie’, which 
can all be found at http://www.peppertop.com/ 


Video Editing with Kdenlive 
Pt2 


By Ronnie 


So, now that you know the basic layout of Kdenlive, it’s time to 
start putting it to good use. In this part we’ll cover some basic 
cutting, moving and overlapping video, then, for good measure, 
take a quick look at transitions. 


First, though, drag (or load) a video file into Kdenlive and drag 
it down to video line 1. 


Looking 


The first thing you'll want to do is look through your video to 
see what you want to keep and what you want to cut. You can, 
of course, use the video playback window at the top right. To 
be more precise though, you can click anywhere above, or 
below, the file you have in the timeline. You’ll see a vertical 
line appear. The vertical line shows where you are in the video, 
and shows you that frame in the playback window. You can 
click and drag anywhere above/below the video to scrub 
through it. 
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Let’s say I want my video to start where my current line is and 
disregard anything to the left of it. 


Non-Destructive Cutting 


More often than not a piece of video will contain extra footage 
at the start, or end, of the piece. This is easy to fix. You simply 
hover your pointer over the start or end. Your pointer will 
change to show arrows pointing left and right. Simply click and 
drag to where you want the video to start or end. 


So, in this case, I’d click on the very left edge, hold down the 
left mouse button, and drag (to the right) to where the vertical 
line is. 


One thing to note with this technique is that you haven’t 
chopped off that start piece, you’re simply hiding it. You can 
easily left-click, hold, and drag to the left to reveal it again. 


Destructive Cutting 


This time I’ll use the Razor tool. This is the icon above the 
timeline, showing a pair of scissors. 
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Clicking the icon will change your mouse pointer to a pair of 
scissors with a red vertical line. 


Where you place this red line, and click with the left mouse 
button, is where the video will cut. To stop cutting, click the 
Selection tool beside the scissors. 
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You'll notice that you now have two video files. You can 
subdivide as many times as you like. 


Let’s say you have a bit in the middle of your video that you 
don’t want. You’d cut at the start of that point and cut at the 
end of that point. Left-click on the video in the middle (that bit 
you don’t want) and press delete. It’s gone. You’ll have a hole 
in your video, but that’s OK - you can move the videos around. 
Which is what we’ll look at next. 


Moving Audio/Video 


Moving is simple enough. You use the Selection tool which, as I 
mentioned before, is beside the Razor (scissors icon) tool. 


With the Selection tool selected, your mouse pointer will 
become a hand icon when over video or audio. Simply left- 


click, hold, and drag the audio/video. 


Drag the second video up to video line 2 and have a bit of an 
overlap. 
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If you play the video it will abruptly cut to the video on line 2 
and mash up the audio of line 1 and line 2. Not exactly what 
you’d want. 


Obviously you don’t have to overlap videos. They can quite 
happily touch one another on the same timeline. 


Transitions 


A transition will let you go nicely from one video to another as 
long as they have an overlap of some amount. 


Select the ‘Transitions’ tab beside the playback window. 
Thankfully, Kdenlive has a good amount of choice. For this 
example, we'll use ‘Dissolve’. This will smoothly fade from one 
video to the next. 
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Left-click and hold on Dissolve. Drag it down to the timeline to 
where the two videos overlap. 
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Now let go of the mouse button. 


It'll be a bit squished because it’s not a very long dissolve time, 
but you'll see a red box covering the overlap. That’s it. You’re 
now dissolving line 1 into line 2. 


Click above/below the videos on the timeline to see it 
happening in the preview. Or play the preview to see it in real 
time. If your PC can handle it. 


If you want to delete the dissolve you can click on it (to 
highlight it) and press the Delete button on your keyboard or 
right-click on it and choose delete. 


Rendering (Briefly) 


I won’t go into rendering video here, but if you’re happy with 
what you have, and want to get a final video, then click the 
‘Render’ button (at the top of the screen), choose a video 
format, and click ‘Render to File’. 


Pll go more into rendering at a later time. 


That’s it for this month. Next month I’ll discuss adding text to 
videos. 


Chrome Cult - CryptUP 


Written by S. J. Webb 


I have previously covered various encryption apps for your 
Chromebook. I have not reviewed encrypted email. The recent 
Yahoo hack just shows that email encryption is vital on 
personal documents and certain conversations. End-to-end 
encryption for email is not easy for new users. Perhaps an app 
can resolve this issue. I want to say thanks to Mike Ferrari 
again for directing me towards another tool to add to my 
arsenal. The app that resolves this issue is CryptUP. This app 
will work in Chrome or Chromium Browsers. It is found in the 
Chrome Web Store. 


~ CryptUp would like to: 
iew your emails messages and settings 
™M View y g ing 
eo View your basic profile info 


mM Manage drafts and send emails 


By clicking Allow, you allow this app and Google to use your information in accordance 
with their respective terms of service and privacy policies. You can change this and 


other Account Permissions at any time. 
mcd jaw | 


To start using CryptUP 
click [J button in the corner 


When you install the app, you have several GUI prompts that 
help set up the app. After clicking the UP button in the corner 
of the GUI, the process begins. 


Set up CryptUP 


Your browser needs access to Gmail to help you send your first encrypted message. 


Learn more about Gmail access and security. 


New to encryption? Use your own PGP key Create a new PGP key 


Quick setup Manual setup Manual setup 


Click the new encryption key and create a passphrase. The 
passphrase must be extremely strong. 


Choose a pass phrase to protect your encrypted emails. See choosing secure pass phrases. 


® 
Pass phrase hide 


WEAK (average time to crack: less than a second) 


Loss of this pass phrase cannot be recovered. Note it down on a paper. 


SET PASS PHRASE 


Choose a pass phrase to protect your encrypted emails. See choosing secure pass phrases. 


show 


GREAT (average time to crack: centuries) 


Loss of this pass phrase cannot be recovered. Note it down on a paper. 


The setup is done and the default layout of CryptUP is 
apparent. 


Setup done! 


PTED EMAIL 


MORE SETTINGS 


CryptUP Settings 


e2topatcd 


New Email Security Backup Feedback 


Now it is time to compose an encrypted email. Click on New 
Email and a new popup GUI appears. I will send a text message 
to my old Yahoo account. I enter in some basic text and can 
choose an encryption method: challenge question or pubkey. I 
chose the question route, where I entered the question and 
answer. I then sent the message off to the Yahoo account. 


New Secure Message 


ENCRYPT AND SEND 


Chrome Cult 


There is no Google Cloud, it is really a Google Computer. 


All marked in Grey don't use CryptUP. Tell them to download it! Alternatively, 


USE A CHALLENGE ADD THEIR PUBKEY 
QUESTION oF if the have PGP enabled 


@ Saved i) 


All marked in Grey don’t use PGP encryption and will need to 
answer a challenge question to decrypt your messages. 
If they use other PGP software, add their public key to skip this. 


Enter a question they can answer ? ™ Answer 


i Saved & 


CryptUP: Encrypt Gmail with PGP 


Your message has been sent 


The message arrives in the Yahoo account. It has a serious 
amount of random gibberish in the text, but I have an 
opportunity to answer the challenge question by clicking the 
blue link. 


This message is encrypted. If you can't read it, visit the following link: read message 


-----BEGIN PGP MESSAGE---- 
Version: CryptUP 3.2.0 Easy Gmail Encryption https://cryptup org 
Comment: Seamlessly send, receive and search encrypted email 


wcFMA2q83tzONJs1AQ//dy1NdOiUXjIS2HyUn37wtyilrvXB/rG0Zej1966x 
xFvQ72SjgzEVUSMvJZXf7CAI9ILWLi8eXWv6HHSfr64KZaWDT7F4xrtdKe58 
A7ThDZ/4vTHF3AkudFsizflLHhiu9S TOcwsj2Bm2yMXU150+dYfzrgMwddoGs 
+xGUEqyYjYZEk5bume05qiG/evl/nyS/BPbW140abRxDx+TRXAo4qjMyycYM 
XGUXWBxg+p62jlVi9GE7w9GwaHUABZhtLifZKOKHyqDtzhv8yS6lumhem/91 
XufnknheGulkOhbi3puY LT+IxQ+cc4scW+unbTLFg9nvEOY OnYxw4wBF0G17 
JSncFFidqT+7DviZhZxOAR2XiAd9fXnQSLTjCylZm7Ah0+MOXnort7clkRev 
UyaFwM3u5ZLyfWdjJW9RT3tCL/muY 9VPS0t6Ss2e0nlOWtVQVaLvM+PSfxx 
AgVhHEtS11kkamhpFz8zkxZknO6bR3gckla8pi04S4Y tz2Vm+Gho8J2tZXnS 
KKKylnQG42krCQDu15aP6z5HiMeXM2tP TenDg5JBgi9jzM1lyUyKKUT1YuFzC 
VGwlOOGyl1I9IgLFk+Alig3YaEY yOpQCoBRS7NKcRiW537BWGTZwoSIRV3UCW 
vGiWa6dCVQFYWA2vCDtNHZ2+HozcTYWFrA704sZ8X0jDLgQJAwgPya+FaP+r 
F2Cfvhs+ntOdfXh08urL7aNSMzw78tiJvPRDeCvpJOzIPTvScQGpHFvivooD 
sONotYJPsDLeOjyHVEmGAIGTyoVh9PJuC7TOM4JY 7bvSsgkuMeg/oNddNZxP 
STYffdKyonuXIUAKh4BMOHgD4yuKTVPI0/zirhSBvBGMS/Ypo+8UNPbExgd7 
wZ4juzmUWv+vhs8Fm2C1 

=Kr2e 

---END PGP MESSAGE----- 


Open Encrypted Message 


Security Question: "Is there a cloud" 


Version: CryptUP 3.2.0 Easy Gmail Encryption https://cryptup.org 
Comment: Seamlessly send, receive and search encrypted email 


WCFMA2q83tzZONJS1AQ//dy1Nd0iUXj 152HyUn37wtyilrvxB/rGOZej1966x 
XFvQ72Sj gZEVUSMV JZXF7CA191LWLi8eXWVG6HHSf r64KZawWwDT7F4xrtdKe58 
A7hDZ/4vTHF3AkudFsizf1iHhiu9STOcwsj 2Bm2yMXU150+dYfzrgMwddoGs 
+xGUEqyY j YZEkS5bume05qiG/evl/nyS/BPbW140abRxDx+TRXA04qjMyycYM 


I answer the question, and the encrypted message populates. 
The encrypted message populates below. 


Open Encrypted Message 


There is no Google Cloud, it is really a Google Computer. 


CryptUP is extremely easy to set up and use. While working 
with the app, I chose to remove the app from my Chromebook. 
This sent a message to the developer asking me to review 


CryptUP that resulted in a quick email chat with the creator: 
Tom James Holub. Per Tom, there are several future updates to 
this app. See a quick quote below. 


There will be some good stuff coming out in the upcoming weeks — 
like sending encrypted attachments to people who don’t have 
encryption set up. People without encryption will also be able to 
send an encrypted response back in their browser. It will also start 
using Ethereum blockchain as a public key server. 


This app deserves a four out of four stars. This is an app that 
would be useful for many individuals on a personal or 
professional level. Your email account could be hacked, but the 
encryption would prevent full exposure. It is always wise not to 
store personal or sensitive information in your email account. 
However at times this rule has to be broken. 


S. J. Webb is a Linux Hobbyist and Research 
Coordinator. He enjoys fishing, hot rodding, and 
spending time with his kids and wife. He thanks 
Mike Ferarri for his mentorship. 


Write For Full Circle Magazine 


Written by Ronnie Tucker 
Guidelines 


The single rule for an article is that it must somehow be linked 
to Ubuntu or one of its many derivatives—Kubuntu, Xubuntu, 
Lubuntu, etc. 


The Official Full Circle Style Guide can be read at: http:// 
url. fullcirclemagazine. org/75d471 


Please read this document before submitting an article. Follow 
the guidelines and you will have a much better chance of 
seeing your article in Full Circle. 


Writing 


There is no word limit for articles, but be advised that long 
articles may be split across several issues. In your article, please 
indicate where you would like a particular image to be. Please 
do not use any formatting in your document. 


Images 


Images should be no wider than 800 pixels, in JPG format, and 
use low compression. When you are ready to submit your 
article, please email it to: articles@fullcirclemagazine. org 


Non-English Writers 


If your native language is not English, don’t worry. Write your 
article, and one of the proofreaders will read it for you and 
correct any grammatical or spelling errors. Not only are you 
helping the magazine and the community, but we’ll help you 
with your English! 


FOR REVIEWS: 


Games/Applications When reviewing games/applications, 
please state clearly: 


title of the game 

who makes the game 

is it free, or a paid download? 

where to get it from (give download/homepage URL) 
is it Linux native, or did you use Wine? 

your marks out of five 

a summary — with positive and negative points 


Hardware When reviewing hardware, please state clearly: 


make and model of the hardware 

what category would you put this hardware into? 
any glitches that you had while using the hardware? 
easy to get the hardware working in Linux? 

did you have to use Windows drivers? 

marks out of five 

a summary — with positive and negative points 


LinuxLabs - Use Rclone 
Browser on Cloud Hosts. 


Written by Ronnie 


Rclone is a piece of software that will let you upload/download 
files to/from various cloud hosting services (such as Google 
Drive, Dropbox, et al). It’s not the most friendly piece of 
software though, but now it has a browser: rclone-browser. 


Installing 


First, create a folder to download, and keep, everything in. 


We need two pieces of software. First grab the browser file. Go 
to: http://ppa.launchpad. net/nilarimogard/webupd8/ubuntu/pool/ 
main/r/rclone-browser/ and click on the appropriate DEB file for 
your system, and download it to the folder created above. 


Index of /nilarimogard/webupd8/ubuntu/pool/main/r/rclone-browser 
Name Last modified Size Description 
Z 30-Jan-2017 13:13 2.3K 


30-Jan-2017 13:13 1.2K 
lo4.deb 30-Jan-2017 13:13 152K 


30-Jan-2017 13:13 403K. 


Next, we need rclone itself. Go to: hitps://github.com/ncw/ 
rclone/releases and, again, grab the appropriate ZIP file for your 
system and save it in the above folder. 


new /rclone 


«> Code Issues 294 


Latest release 


OWatch~ 195 * Star 5,054 Y Fork 274 


Pull requests 4 Projects 2 Wiki Pulse Graphs 
rclone 
@ new released this 28 days ago - 55 commits to mas e this release 


Rclone - rsync for cloud storage. Sync files to and from many cloud storage providers. 


Downloads 
" rclone-v1.35-freebsd-386.zip 
© rclone-v1.35-freebsd-amd64.zip 4.02 MB 
® rclone-v1.35-freebsd-arm.zip 74 MB 
© relone-v1.35-linux-386.zip 
™ relone-v1.35-linux-amd64.zip 4.02 MB 
@ relone-v1.35-linux-arm.zip 74 MB 


® relone-v1.35-linux-arm64.zip 3.8 MB 


Head into the folder and unzip the rclone file (either using your 
window manager or via the terminal). 


rclone-browser > 


Recent 


Home 


Documents 


Downloads 


Music 


Pictures 


Videos 


®&@D ewe? oO 


h 


rclone-v1.35- rclone- rclone-v1.35- 
linux-amd64 browser_ linux-amd64. 
1.0.0-1- zip 
webupds- 
yakketyO_ 
amd64.deb 


Open a terminal 


cd to the download directory (eg: cd /Downloads/rclone) 


To install the DEB file do: 


Obviously change the DEB filename to the one you 
downloaded. 


Now that it’s installed, run the rclone-browser, either via Unity 
or your desktop menu. 


The first time you run rclone-browser, it needs you to show it 
where rclone is. We unzipped it a little while ago. 


Remotes | Jobs 


Cannot check rclone verison! 
Please verify rclone location. 


Config... Refresh pen 


Settings 


rclone location: rclone-v1.35-linux-amd64/rclone 
Stream command: 


Mount options: 


System Tray 
@ Always show in system tray 
@ Close to system tray 
@ Notify about finished transfers 


User Interface 
@ Show folder icons 


@ Show file icons 


@ Alternating row colors 


Changing these options will require reopening remote tab. 


Set System Tray and User Interface settings as desired. 


Remotes | Jobs 


Config... Refresh 


rclone v1.35 In /home/ronnie/Downloads/rclone-browser/rclone-v1.3 5-linux-amd64/rclone 


Now we have the blank rclone-browser window. We need to 
add cloud hosts. Click the ‘Config...’ button. A terminal will 
pop up with some options. Unfortunately adding hosts needs to 
be done via the terminal, but it’s very simple. Honest! 


Type ‘n’ for ‘new remote’ (aka: new cloud host), and press 
Enter. 


Now you'll be asked some questions, but, for most hosts, it goes 
like this: 


HM ‘Name’ this is what you want to title this storage. 

HM Now choose the provider from the list. 

M@ Leave client id blank (just press Enter). 

M@ Client secret should also be left blank (again, press Enter). 
M@ For Auto-config choose yes. 


The next part depends on the hosting provider. Some will open 
a browser window and have you log in to the cloud host. Some 
may even give you a URL to paste in to your browser window 
(eg: | ). 


&@ 


~ rclone would like to: 


é& View and manage the files in your Google 
Drive 


By clicking "Allow", you allow this app and Google to use 
your information in accordance with their respective terms 
of service and privacy policies. You can change this and 


other Account Permissions at any time. 


In this example, it needs to get a code from Google to use 
Google Drive. It will wait for the code. It gets the code, display 
the code, and ask if this is OK (answer yes). 


For Dropbox, you need to follow a URL, and then paste in a 
code. Others may be different. In most cases it’s pretty 
straightforward and easy enough. 


Now we have one host added! Follow the text menu items to 
add more hosts, or exit. 


So, you’ve added your hosts and exited the menu. You’re back 
in rclone-browser. Click the ‘Refresh’ button to update rclone- 
browser. 


Remotes | Jobs 


G gdrive 


Double click the hosting entry in rclone-browser to see a file 
list. 


Remotes Jobs | gdrive & 


@ Refresh | fj New Folder | {5} Rename @ Delete | & b& Stream Upload y Download 

/.directory 

Name y Size Modified 

vB/ 
> G 23andme 2015-03-31 18:44:14 
> G Apps 2014-01-01 22:48:52 
> G@ Board Games 2016-07-10 16:33:18 
> Ge FCM #34 - #39 2013-01-19 15:34:21 
> G FCM #40 - #49 2012-08-19 11:35:16 
> Ge FCM #50 - #59 2012-08-19 11:35:56 
> G@ FCM #60 - #69 2013-01-28 20;38:40 
> Ge FCM #70 -#79 2013-12-01 18:02:07 
> G@FCM #80 - #89 2014-09-28 12:57:18 
> Ge FCM #90 - #99 2015-10-17 12:30:21 
> G FCM #100-109 2016-09-09 19:33:05 
> G FCM #110 2016-06-24 14:35:04 
> @ FCM #111 2016-07-17 19;13:52 
> G FCM #112 2016-08-27 17:51:25 
> GFCM #113 2016-09-18 11:23:09 
> GFCM #114 2016-10-16 12:48:57 
> @FCM #115 2016-11-20 15:42:29 
> GFcM #116 2016-12-18 15:30:48 
> FCM #117 2017-01-27 20;08:38 
> FCM #118 2017-01-28 12:45:13 
> G@ FCM Articles 2015-11-28 16:45:27 ||. 


rclone v1.35 In /home/ronnie/Downloads/rclone-browser/rclone-v1,3 5-4inux-amd64/rclone 


Select a file, then click a button at the top of the window to do 
that action. Or you can right-click on a file to select an action. 


If copying to another host, you need to enter the destination 
drive (eg: gdrive:/ ) 


Source: Dropbox:/1453.pdf 


Destination: |qdrive:/ i] 


Settings | Transfer Exclude 


Mode Skip files 
@ Copy Skip files that are newer on the destination 
Move () Skip all files that exist 
Syne @& Compare Size & mod-time : 


@ Verbose output 
~] Don't cross filesystem boundaries 


Don't update mod-time if files are identical 


| 
ie) 
o® 
}2 
a 
|@ 
: 
| 


Restore Defaults Run 


Click the ‘jobs’ tab to see the resulting output. 


Remotes Jobs | gdrive Dropbox 


v Finished Copy Dropbox:/1453,pdf 
Source: Dropbox:/1453.pdf 
Destination: |gdrive:/ 
Size: 345.970 kBytes | Bandwidth 25.879 kBytes/s| Elapsed time: 
Transferred: 1| Errors: O| Checks: 


> Show Output 


rclone v1.35 in /home/ronnie/Downloads/rclone-browser/rclone-v1,35-linux-amd64/rclone 


Rclone-browser is definitely a handy piece of kit. I’ve only 
touched upon what it’s capable of. You can choose directories 
and have them sync to hosts and such like. 


POSSIBLE QUIRK OF DRIVE (aka: Google Drive): I find that I 
can transfer a folder of files from drive:/ to Dropbox:/, but 
can’t transfer a single file. So, if you get an error transferring a 
single file from drive:/ to Dropbox:/ (or another host), then put 
the file in a folder first and transfer the folder. It might be just 
me. I’m not sure. 


For advice, see the rclone forum: https://forum.rclone. org/latest 


Importing [EEE1394/Firewire/ 
iLink DV video 


Written by Charles McColm 


Last month, one of my brother’s sent me a DVD in the mail that 
contained video of us from the mid-80’s. Apparently the video 
had been stored on a camera and just never removed. This 
retrospective got me thinking about how popular Youtube 
channels like The 8-Bit Guy and Techmoan have become 
recently. It also got me thinking about all the video I have 
stored on MiniDV tapes that I never processed. 


Nine years ago, I recorded a lot of video using a Panasonic PV 
GS-80 camcorder. This inexpensive camcorder featured image- 
stabilization, 16:9 video, and relatively good quality for the 
price point at the time. I posted a number of videos from 
“Ontario Linux Fest” on archive.org, but I recorded so much that 
I simply didn’t get around to importing everything. 


The last time I was transferring the MiniDV DV tapes to digital 


format, I remember running into issues with KINO and 
pulseaudio. Both audio and video played back at super high 
speed. KINO was a great digital video editor capable of 
importing video from IEEE1394 sources like our Panasonic 
camcorder. IEEE1394 is the standard most often called 
Firewire. Firewire is actually Apple’s implementation of the 
IEEE1394 standard. Sony calls their IEEE1394 implementation 
i.LINK, and Texas Instruments called theirs Lynx. What I loved 
about KINO was that it gave complete control over the camera 
from the user interface. Unfortunately, as new video editors 
started coming out, KINO was abandoned. This is about when I 
stopped importing DV from the MiniDV tapes. 


Inspired by my brother’s DVD, and all the retro video of late, I 
decided to hook the camera up to an HP 6710 core 2 duo 
laptop running Linux Mint Cinnamon 18. Back when I used to 
import DV, I always had to issue modprobe commands to get 
IEEE1394 working. I checked out some of the Ubuntu pages 
concerning Firewire and got mixed ideas. Some of the 
documentation seemed to indicate that I might need to 
blacklist items, and run modprobe, while other documentation 
seemed to indicate that things would just work. I installed 
KINO and the command-line IEEE1394 importing program 
dvgrab. Lo and behold, when I turned the camera on and went 
into the Kino Preferences > IEEE 1394 tab, the camera was 
detected! I got even more excited when I clicked the Capture 
button and KINO started importing the video as flawlessly as it 
originally did. 


Sadly, my excitement wasn’t long lived. After it started 
importing the fourth clip, KINO froze. Linux Mint was still 
responsive so I opened a terminal and checked the file size a 
couple of times. Even though KINO was frozen, the back end 
dvgrab program was still importing video, I could tell by 
running ls and watching the file size change over time. When 
the import finished, KINO stayed frozen, but I had several more 
.dv files. 


Linux 4000 .bashre 
Linux 4096 

linux 54360000 : capture00l. 
linux 111600000 ; capture002. 
linux 417000000 ; captured03. 
linux 42360000 : capturedo4. 
linux 82449000 : captured65. 
linux 197520000 : capture006. 
Linux 681120000 : capture007. 
linux 38280000 : capturedos. 
Linux 4096 


u 
5 
1 
1 
1 
1 
1 
1 
1 
1 
3 


Since I knew dvgrab could import video without issue, I used it 
to import DV from several other tapes. KINO defaults to the 
name capture###.dv (this can be changed in KINO), whereas 
dvgrab uses the name dvgrab-###.dv if you don’t specify a 
filename to capture to. As with any command-line program, 
dvgrab can take a number of different switches to change the 
behaviour of the capture. The -t switch, for example, puts the 
timecode at the end of the capture name so you end up with 
something like dvgrab-2009.09.04_22-14-52.dv. The timecode 
is the date and time the video was recorded. So, in the previous 
example, the video was recorded on September 4th, 2009 at 
22:14:52 or 10:14 (and 52 seconds) in the evening. 


Changing the name dvgrab records to is as simple as specifying 
the name at the end of dvgrab. For example: 


Results in files: mymove-001, mymovie-002, mymovie-003, etc. 


There are plenty of video editors available for Linux: Openshot, 
Kdenlive, Pitivi, Avidemux, and Shotcut. Openshot, Pitivi, 
Avidemux and Shotcut don’t appear to support IEEE1394 
capture. Kdenlive is suppose to support IEEE1394 capture, but 
when I tried it, I couldn’t get Kdenlive to recognize our camera 
(KINO and dvgrab do). I looked at LightWorks, but it requires 
an account, and wouldn’t work on the Core 2 Duo-based 
notebook. 


Since my desktop (an A8-5600K APU-based system with 16GB 
of RAM) is a lot more powerful than the Core 2 Duo notebook, 
it makes sense that I do all the editing on the desktop. My 
workflow is a bit painful, import the video on the Core 2 Duo 


laptop using the command-line dvgrab, and transfer the video 
via SSH to the desktop for editing. We have a gigabit network 
running throughout our flat so it’s much more efficient than 
trying to back up to a USB 2.0 external drive (the desktop is 
USB 3.0, but the laptop is still 2.0). 


Openshot has been my video editor of choice in the past, it 
works well with .dv files, is easy to use, supports effects like 
green/blue screen, and is stable. (That’s Jeremy Allison in the 
screenshot/video giving a talk at Ontario Linux Fest 2008 
entitled Livin’ La Vida Linux) 


I admit this isn’t a very efficient process, but it works, and it 
puts an old machine (the Core 2 Duo laptop) to good use. I’ll 
probably revise the process in the future by putting an PCle 
ITEEE1394 400 card in the desktop so I can do all the importing 
and editing in one machine. With approximately 30 more 
MiniDV tapes to import, it’s a big project. 


Next month, I’ll have an update on how the video turned out. 
For an example of the video I imported back in 2007 to 2009, 
just search for “Charles McColm” on archive.org. ’ve posted 
several videos taken with the Panasonic PV-GS80. Now that the 
editors have improved and sites like archive.org and Youtube 
are allowing higher quality content I believe the video should 
be a bit better. 


Charles McColm is the project manager of a not- 
for-profit computer reuse project and the author of 
Instant XBMC. When not building PCs, removing 
malware, and encouraging people to use GNU/ 
Linux, Charles works on reinventing his blog at 
http://www.charlesmccolm.com/. I can also be 


reached on Twitter or Google + as: Chaslinux 


Book Review 


by Greg Walters 


WICKED COOL® 
SHELL SCRIPTS 


Ot SCRIPTE tom LINUE, OF KX. 
aANO UNITK SYSTEMS 


The book Wicked Cool Shell Scripts by Dave Taylor and Brandon 
Perry (2nd Edition) has a relatively simple premise. They 
introduce a variety of shell scripts to you, explain what they 
do, and give you some simple enhancements you can make on 
your own. For anyone looking for an actual guided tour 
through creating your first few shell scripts, this is not the book 
for you. If, however, you learn by example, or simply want a 
repertoire of helpful shell scripts, this is a great resource. 


The Good 


The book clearly lays out the scripts (with comments), and 
explains some of the more unusual aspects. They then give you 


the sample output of each possible result, as well as a bit of 
‘homework’ - that is, some changes or enhancements you can 
try on your own. There are 101 of these scripts, which range 
from what I would refer to as niche (i.e. relatively uncommon 
scenarios) to versions of scripts I use almost every day. 


Some chapters, such as Chapter 2: ‘Improving on User 
Commands’ are very useful for any kind of CLI user, while 
other chapters are geared towards system administration, and 
may therefore not be for everyone. 


The book also offers all source files (and some example files) as 
a zip archive from the book’s product page (http:// 
nostarch.com/wcss2). However, I was also happy to discover via 
Google that there is a Git repository available too. 
Unfortunately, this doesn’t seem to be indicated anywhere. The 
repository is here: https://github.com/brandonprry/ 
wicked_cool_shell_scripts_2e 


There is also an entire chapter dedicated to OS X (macOS). This 
is very useful, as there are a variety of differences between 
Bash (and other commands) in Linux and Apple’s OS. An 
Appendix is also included, for installing Bash in Windows 10. 
It’s nice to see that the book is willing to cover each option - 
even if it specifically states that some scripts are untested in 
other OSes. The addition of the Windows 10 information also 
shows how recent the book is - I originally feared that it may 
have just missed that development. 


Differences Between 2nd Edition and 1st Edition? 


According to the jacket (and the Intro), the 2nd Edition 
contains 23 new scripts, including a ZIP Code lookup, a Bitcoin 
address information retriever, a suite of tools for working with 
cloud services like Dropbox and iCloud, tools for renaming and 
applying commands to files in bulk, and image processing and 
editing tools. 


As I don’t own the 1st Edition, I can’t say much about the 
actual differences, and must instead rely on the author and the 
book’s comments. 


The Less Good 


I haven’t found anything inherently bad about this book. The 
scripts all fulfil their purpose, and I haven’t run into any issues 
on an up-to-date ArchLinux installation. There are, however, a 
few inconsistencies. In Chapter 1, the author introduces a script 
for normalizing date formats - where any format is assumed to 
be either 8/29/2016, or August 29, 2016. In other words, the 
typical “US” format. It would have been nice to see the script 
accept dates in the format DD/MM/YYYY. Especially due to the 
fact that another script in the same chapter supports different 
thousands and decimal separators (such as the US format of 
1,000.00 and the German format of 1.000,00). While reading 
through the book, I didn’t notice too many occurrences of this, 
but that makes those inconsistencies stick out even more. Even 
just acknowledging this by making it an enhancement task 
would be sufficient. 


Conclusion 


There are a variety of scripts in this book that I have 
alternative versions of (either because I wrote them, or because 
they belong to a different tool I use). However, there are still a 
great many scripts that I will begin to use, or adjustments I will 
carry over to my own versions. As such, the book fulfils its 
premise completely - it does indeed offer a well-stocked toolbox 
of shell scripts for the average (and professional) Linux user. By 
including information on OS X and Windows 10 as well, it can 
give even experienced users something new to try or test. 


Rating: 4.5/5 


I would be tempted to give it a 5 out of 5, but unfortunately 
feel that some of the inconsistencies could have easily been 
avoided, and are generally a question of formats that are 
relevant in many other countries, including the country I live 
in, therefore requiring some effort on my part in order to 
implement them. 


Resurrection of a netbook with 
ubuntu minimal 


Written by Kavinda Bandara 


Iam a doctor by profession and currently enrolled in a 
postgraduate program. I started looking for a portable laptop 
instead of my own Dell Inspiron 15 because it was bulky and 
heavy to transport on a daily basis on public transport. My 
main expectations were accessing the internet for my online 
files, and regular work on an office suite. I had to prepare a lot 
of documents, presentations and patients’ records. Sometimes I 
had to work with spreadsheets for databases and analysis. 


My wife had an Asus eee PC (1001PXD) netbook. It had an 
Intel Atom processor with 1GB RAM and came preinstalled 
with Windows 7 starter. It was an ideal travel companion but 
was not used for nearly 2 years due to a non-functioning 
keyboard and sluggish performance — which worsened over 
time. 


I did my research in eBay and found a suitable keyboard for the 
system. Replacement along with a service brought it back to 
life, but Windows was no more an option due to speed. (Also I 
must mention that I hate their privacy policy). 


Since I did not want to load the system with unnecessary 
software from the beginning (which would hamper a simple 
work environment), I chose to install Ubuntu minimal. Clear 
guidance in the reviews helped me to make the choice. 


I downloaded minimal ISO 16.04, burnt it to a CD, and 
installed it into the netbook. The installation process was 
straightforward as it was similar to the installation of a regular 
Ubuntu distribution. I created manual partitions and wiped out 
Windows. During installation, network connectivity was 
needed and I had the options of wired or wireless, and I chose 
wireless despite the advice to do the other. It worked 


flawlessly. The server chosen was ‘local server’ 
(lk.archive.ubuntu.com). I decided to complete the installation 
first, reboot, and then choose the software I needed — so, at the 
end, I had a bare bones minimal installation in my netbook. 


But, after the reboot, I found out the local server was not 
working properly and I could not download the packages I 
wanted. Then I tried to change the server with the “add-apt 
repository” command, but it failed as the terminal did not have 
that installed, which prompted me to install it. And it was 
impossible because the server was not working. 


This made me install Ubuntu minimal for the second time. I 
kept everything else the same except the server — for which I 
now chose ‘main server’. At the end I chose to install Xubuntu’s 
desktop environment. 


With the reboot, the netbook came to life with a bare bones 
Xubuntu, just as I preferred. I installed Libreoffice, Firefox, VLC 
media player, Software centre and Dropbox. 


Currently, I’m happily using my newly refurbished netbook for 


all my work. The only problem with it is the lack of a client for 
Google drive, but I’m currently thinking of trying overGrive. 


Letters 


Q&A 


Compiled by Gord Campbell 


Q I recently installed ubuntu 16.04 (64-bit). For some reason 
when I attempt to load GIMP 2.8 I get this: 


A (Thanks to hoefield in the Ubuntu Forums) Try 
deleting (or renaming) the templates folder in 
~/.gimp-2.8 


Q Why doesn’t the product name show after doing the 
command Ishw -c display? 


A (Thanks to Temtijin in the Ubuntu Forums) Run this: 


Then try Ishw again. 


Gord adds: 
I use Ishw slightly differently: 


Then I double-click on the file on my desktop, and the 
display product name does appear in the browser. 


Q I've set up an older Dell Vostro 1500 laptop with 4G RAM for 


my mother that has a 1.6GHz dual-core Intel Core 2 processor. 
I installed the CPU Frequency Scaling plugin. However, the 
scaling tool on her laptop will always stay locked at 8300MHz 
no matter what I select, so the computer is excessively slow. 


| al 


A (Thanks to RallyDarkstrike in the Ubuntu Forums) It 
was the battery! During one of my Google searches, I 
came across a short post that said sometimes certain 
brands have their BIOS lock the processor at a lower 
speed when the power cable isn’t charging correctly or 
the battery is below a certain charge. I shut it down, 
removed the battery, plugged it in on A/C only, booted 
it back up, and voila! Low and behold, CPU scaling is 
working perfectly on demand! 


Q I set my download directory to home/andy/Downloads, yet 
downloads end up in tmp/mozilla_andy0 


A Try 


Q I have created a script to update something automatically. 
The script must run as root. It runs fine with sudo every time in 
an interactive shell, using ssh into the target box to do it. 


However it fails every time when run by root’s crontab. 


The error message basically states that it fails to bring tomcat 
down. (need to update a DB). 


The command to do this is (this is how it appears in the script): 


Can anyone tell me why this works ALWAYS when run in an 
interactive shell but fails ALWAYS if run out of crontab?? 


A (Thanks to SeijiSensei in the Ubuntu Forums) If 
you’re running 16.04 or later, you should be using the 
systemd commands like systemctl. To start a service on 
a systemd machine, use: 


Q I have loaded Ubuntu ubuntu-16.04.01-desktop-amd64.iso 
on a memory stick. How do I save a screenshot? 


A (Thanks to ajgreeny and yancek in the Ubuntu 
Forums) You could remake the live USB with 
persistence, which allows you to save files and keep 
them after a shutdown or reboot. 


You could also create a mount point for a partition on 
a hard drive (if you have one) or another flash drive, 
mount it, and copy the screenshots there. 


Top questions at Askubuntu 


If you are nervous about clicking on a short goo.gl URL, you 
can get information about it quite easily. Copy the URL, paste it 
into your browser’s address bar, and add a plus-sign. Now 
goo.gl will tell you where it goes, as well as statistics about its 
use. (Thanks to askleo.com for the tip.) 


MH How can I convert the complete file to a specific format? 
https://goo. gl/dPgrGz 


@ How can I view and edit PowerPoint presentations that don’t 
render correctly? 
https://goo.gl/zylPuH 


Mi Where does the rename command come from? 
https://goo. gl/3wuX VG 


M@ Rename files with one line command 
https://goo.gl/1VzoZw 


MH Does Ubuntu carry over Windows filenames (png, exe, ect.) 
or does it have its own? 
https://goo.gl/MVOKSa 


M@ How can I see which encoding is used in a file 
https://goo. gl/bLB89j 


Mi Why does Ubuntu not ship with a way to fill in PDF forms? 
https://goo.gl/4hRVP6 


H Who is filling my disk? 
https://goo.gl/bK030d 


@ Cana vanilla Ubuntu 16.04 LTS Server run without snapd? 
https://goo.gl/ZKdb2b 


Tips and Techniques 
Podcasts 
For several years I have subscribed to podcasts. 


With a podcast client, you can tell it what podcasts you want to 
hear or see, and it will download any new media, and help you 
play it. With my most recent Linux install, I have switched to 
gpodder, probably the most popular Linux podcast client 
software. 


One can get carried away with podcasts, and subscribe to more 
audio or video media than one has time to listen or watch. In 
this latest iteration, I have limited myself to just seven 
podcasts. Here’s my list: 


The Full Circle Weekly News, 
the Ubuntu Podcast, 
mintCast, 

Going Linux, 

TEDTalks, 

This American Life, 

Vinyl Cafe 


I really like the guys who produce mintCast, and salute them 
for taking an unconventional path; this season, they are 
installing Linux From Scratch, and talking about what is 
involved, and the challenges. I’m a “it just works” kind of guy, 
so I will never install Linux From Scratch, but it is still 
interesting to hear about their struggles. 


At the same time, I can’t imagine subscribing to podcasts 
without TEDTalks. This is where you will find the biggest 
challenges to your world view. 


I use VLC media player to play podcasts, and typically set the 
playback speed to 1.3 times real time. Why waste time if I don’t 
need to? 


Gord had a long career in the computer industry, 
then retired for several years. More recently, he 
somehow found himself "The IT Guy" at a 15- 
person accounting firm in downtown Toronto. 


Ubuntu Games - Mad Max 


Written by Oscar Rivera 


The partnership of Warner Brothers and Feral Interactive has 
brought us another great video game title, Mad Max. Mad Max 
is a one-player, open-world, action-adventure game, loosely 
based on 2014’s Mad Max: Fury Road movie. For anyone who 
has seen the movie and is familiar with the atrocious 
characters, the arid wasteland setting, and its post-doomsday 
storyline, the video game will feel like an extension of the 
movie. 


Mad Max was developed by Avalanche Studios and released by 
Warner Bros. on September 2015, on the PlayStation 4, Xbox 
One and Microsoft Windows platforms. Then, late in 2016, 
Feral Interactive gave us a Linux port, and as usual, they’ve 
done an excellent job. So far, I’ve played about 30+ solid 
hours over the course of about 4 weeks, and that’s without 
giving it the full exploration that it so rightfully deserves. Not 
only is this game a delight to play, but it also keeps introducing 
new elements the longer you play and the more you level up. 
Just when you think you’ve gotten to know the game, 
something new is thrown into the equation and you feel like 
you’re back at square one, trying to figure out how to improve 
upon and conquer your newest quest. 


Currently, Mad Max is selling for around $19.99 at the Humble 
Bundle Store as well as through Steam. It can be played with 
mouse/keyboard or with a gamepad controller. 


As I began playing the game, the first lasting impression it left 
on me was the stunning & breathtaking visuals. The graphics 
are impressive, from the post-apocalyptic wastelands, to the 
high-speed car chases, to the detail in the characters — whether 
it’s during cinematic cut-scenes or during actual in-game 
playing, the graphics are among the best available in today’s 
games on Linux (or any other platform for that matter). The 
sound is equally impressive, from the sound effects during 


fistfight brawls, shotgun shots, explosive blasts, or the revving 
of Max’s car, to the Hollywood-quality voice acting. As for the 
game-play, it does not at all take any time getting used to, and 
yet it manages to remain fresh as you explore the vast wide- 
open world. The tutorial is easily accessible through the menu, 
but, as of today, I believe I’ve accessed it only once. Instead, 
what I’ve had the need to access multiple times, especially at 
the beginning of the game, was the key bindings/controller 
mapping. The one and only thing that took me a while getting 
used to at first was the lack of a jump button. Max will jump up 
only when needed, and not at will, though there is a way to 
jump out of the way if a car is trying to run you over, for 
example. After I got used to this seemingly simple detail, I was 
able to more fully enjoy the game and now I understand why 
they made it this way. 


The beauty of Mad Max is that, in a way, it’s sort of like two 
games in one. First you’ve got a car game very much like 
Grand Theft Auto or Saint’s Row, but with a definite twist. 
The twist is that, while driving, you’re expected to demolish 
other drivers as well as menacing structures such as Molotov- 
tossing-towers that will straight-up burn you unless you take 
them down with your car’s harpoon. As such, beefing up your 
car is one of your main priorities. Right from the start, after 
you're beat up and your car gets taken away (just like in the 
movie), you befriend Chumbucket, a very loyal and talented 
humpback mechanic. Chumbucket sees Max as the “Angel” for 
whom the Magnus Opus (Chumbucket’s dream car) will be 


built. From early on, Chumbucket will ride along with you on 
every quest, as long as you’re driving the car he’s refining. If 
yow’re on foot, or driving another vehicle that you might have 
taken from one of your enemies, then you’re on your own. The 
advantage of having Chumbucket is that he will repair your car 
whenever it gets damaged, but he’ll also make improvements as 
you gather scrap (like cash) or as you level up. Some of the 
harder driving I’ve had to endure was taking down enemy 
convoys which took me a while to master, but, once the 
Magnus Opus had been beefed up a bit, it was a breeze. 


The other side of the game is what happens while you’re on 
foot. This aspect of the game is very much like the Batman 
Arkham games or like Shadow of Mordor, both games also 
released by Warner Bros. The fighting sequences are easy 
enough to grasp but sometimes not so easy to win. The key 
here is to know how and when to parry since you’re constantly 
being attacked by more than a few war-boys, buzzards, or any 
other frightening enemy. You get to use melee weapons as well, 
but these always break and you cannot carry these with you 
while driving - which makes it that much harder to use one if 
you just got out of your car or if there isn’t one around. The 
limited weapons you get to carry with you are a shotgun with a 
very low amount of ammo, and a couple of homemade shivs 
that will also break with very limited use. When compared to 
driving, the ground-combat isn’t that complicated, especially 
given that you only need to hit the same key/button for almost 
everything, except for parrying and an occasional finishing 


move. Although you do get to use a shotgun, it’s rarely the 
option you want to take since you basically have only a couple 
of shells in reserve - maybe 5-6 once you’ve leveled up — and, 
even then, you want to be conservative when you use them. If 
you happen to die while in battle, you get to continue from the 
previous checkpoint and, given the fact that you can have 
multiple automatic saves stored, you can even start from an 
earlier save if you were cautious enough to keep more than just 
one stored save. A great time saver is the fast travel feature 
which lets you travel to any one of the various fast-travel 
destinations which need to be unlocked in order to be used; 
and some of these are challenging in that they borrow from 
puzzle-solving genres and can be quite difficult to figure out. 


Max’s ultimate goal is to find and kill Scrotus, but, in order to 
do so, he must first defeat other territorial enemies while at the 
same time building and forging relationships with independent 
leaders who’ve managed to fight off Scrotus and his war-boys — 
but, with Max’s help, can regain much of what’s been taken 
from them. Chumbucket also convinces Max to look for his 
dog, which is a blessing — especially in mine-infested fields. 
Along the way, Max encounters other characters who become 
crucial to the ultimate goal that leads to Scrotus. One of these 
characters is Hope, whom Max first meets as she’s held captive 
by Gut Gash, one of Max’s early allies. The storyline is different 
from the movie’s, but there is a lot of crossover, especially 
when it comes to locations such as Gas Town, the Bullet Farm, 
but also with some of the characters, such as Scrotus, Immortan 
Joe, the War-Boys and others. 


I strongly recommend Mad Max, especially if you like the 
movies upon which it’s based, and also if you enjoy great 
action-adventure, open-world, vehicular combat games. If I 
could write another review for Mad Max, I would, since that 
would mean I’d get to play it some more. It plays very 
smoothly on Linux, and looks amazing at the same time. At 
first I was a little concerned that I’d have problems with it 
since my gaming rig’s CPU is slightly below the recommended 
minimum requirement, but, so far, I’ve encountered zero 
problems by letting the game automatically detect the best 


settings for me. Definitely worth the $20, or less if you find it 
on sale. 


5 out of 5 stars 
Minimum Requirements 


M@ OS: Ubuntu 16.04, Steam OS 2.0 or equivalent (64-bit 
required) 

M@ CPU: Intel i5 3.4 GHz, AMD FX-8350 

HM Memory: 8 GB RAM 

MH Graphics: 2 GB Nvidia 660ti or better (driver version 
367.35) 

MH Storage: 35 GB available space 

@ Additional Notes: AMD & Intel Graphics Cards not supported 

yet 


My gaming box 


MH AMD FX-6100 3.3GHz CPU (over-clocked to 3.5GHz) 

M@ Nvidia GeForce GTX 960 graphics card with Nvidia’s 367 
proprietary driver 

M@ 16 GB of Kingston Hyper X RAM 

HM Ubuntu 16.04 LTS (64-bit) with Unity desktop 


Oscar graduated from CSUN, is a musician, game 
enthusiast and has been working with Bitcoin and 
other alt-coins. You can follow him at: 

www. gplus.to/7bluehand https:// 
twitter.com/7bluehand or email him at: 


www. 7bluehand@gmail.com 


The Official Full Circle App 
For Ubuntu Touch 


Brian Douglass has created a fantastic app for Ubuntu Touch 
devices that will allow you to view current issues, and back 
issues, and to download and view them on your Ubuntu Touch 
phone/tablet. 


Full Circle Magazine 


SERBREBRRUGA 


Install 


Either search for 'full circle' in the Ubuntu Touch store and 
click install, or view the URL below on your device and click 
install to be taken to the store page. 


Open with 


Apps 


« Download @ 


Downloading: Issue 99 (English PDF) 


https://uappexplorer.com/app/fullcircle.bhdouglass 


CHA CHA CHA CHANGES 


Our admin went AWOL for months, and I had no idea if/when 
the site would/wouldn’t get paid. Initially the plan was to 
move the site and domain name to my hosting, but eventually I 
managed to track him down and get the FCM domain name, 
and site hosting transferred to me. 


The new site is now up. HUGE thanks to Lucas Westermann 
(Mr. Command & Conquer) for taking on the job of completely 
rebuilding the site, and scripts, from scratch, in his own time. 
The Patreon page that I’ve set up is to help me pay the domain 
and hosting fees. The yearly target was quickly reached thanks 
to those listed on this page. FCM is not going away. Don’t 
worry about that. 


Several people have asked for a PayPal (single donation) 
option, so I’ve added a button to the side of the site. 


A big thank you to all those who’ve used Patreon and the 
PayPal button. It’s a big help. 


https://www.patreon.com/fullcirclemagazine 


Patrons and Donors 


Monthly Patrons 


2016: 


2017: 


Single Donations 


2016: 


2017: 


How to Contribute 


FULL CIRCLE NEEDS YOU! 


A magazine isn’t a magazine without articles — and 
Full Circle is no exception. We need your opinions, 
desktops, stories, how-to’s, reviews, and anything 
else you want to tell your fellow *buntu users. 
Send your articles to: 

articles @fullcirclemagazine. org. 


We are always looking out for new articles to 
include in Full Circle. For help and advice, please 
see the Official Full Circle Style Guide: http:// 
url. fullcirclemagazine. org/75d471 


FCM #119 Deadline: Sunday 12 March 2017. 
Release: Friday 315‘ March 2017. 


M@ Send your comments or Linux experiences to: 
letters @fullcirclemagazine.org 

@ Hardware/software reviews should be sent to: 
reviews @fullcirclemagazine. org 

M@ Questions for Q&A should go to: 
questions @fullcirclemagazine. org 

M@ Desktop screens should be emailed to: 
misc @fullcirclemagazine.org 

M@ ... or you can visit our forum via: 
www. fullcirclemagazine. org 


admin @fullcirclemagazine. org 


podcast@fullcirclemagazine. org 


Getting Full Circle Magazine: 


EPUB Format - Most editions of Full Circle have a link to the 
epub file on the downloads page. If you have any problems 
with the epub file, you can drop an email to: 


Magzster - You can also read Full Circle online via Magzster: 

. Please share and 
rate FCM as it helps to spread the word about FCM and Ubuntu 
Linux. 


Issuu - You can read Full Circle online via Issuu: 
. Please share and rate FCM as it 
helps to spread the word about FCM and Ubuntu Linux. 


